Loading
stb_image is a single file MIT licensed library for processing images. A crafted image file may trigger out of bounds memcpy read in `stbi__gif_load_next`. This happens because two_back points to a memory address lower than the start of the buffer out. This issue may be used to leak internal memory allocation information.
Use CWE-125, Nothings vendor hub and Stb Image.H product page to widen CVE-2023-45661 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2023-45666, CVE-2023-45664 and CVE-2023-43281 for nearby disclosures in the same product family.