libvips@0.0.2 vulnerabilities

Mirror of lovell/sharp libvips binaries

Direct Vulnerabilities

Known vulnerabilities in the libvips package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • M
Information Exposure

libvips is a Mirror of lovell/sharp libvips binaries

Affected versions of this package are vulnerable to Information Exposure via im_vips2dz in /libvips/libvips/deprecated/im_vips2dz.c. It has an uninitialized variable which may cause the leakage of remote server path or stack address.

How to fix Information Exposure?

There is no fixed version for libvips.

*