Medium severity6.5NVD Advisory· Published Oct 25, 2023· Updated Jun 17, 2026
CVE-2023-43281
CVE-2023-43281
Description
Double Free vulnerability in Nothings Stb Image.h v.2.28 allows a remote attacker to cause a denial of service via a crafted file to the stbi_load_gif_main function.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:nothings:stb_image.h:2.28:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:nothings:stb_image.h:2.28:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: =2.28
Patches
Vulnerability mechanics
References
4- gist.github.com/peccc/d8761f6ac45ad55cbd194dd7e6fdfdacnvdExploitThird Party Advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NMXKOKPP4BKTNUTF5KSRDQAWOUILQZNO/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/QVABVF4GEM6BYD5L4L64RCRSXUHY6LGN/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UVQ7ONFH5GWLMXYEAJG32A3EUKUCEVCR/nvd
News mentions
0No linked articles in our index yet.