Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 30 Sep 2026 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in Nothings stb up to 1.16. This affects the function stbi_write_png_to_mem/stbi_write_jpg_core/stbi_write_tga_core in the library stb_image_write.h of the component Image Encoding. Executing a manipulation can lead to integer overflow. The attack can be executed remotely. The exploit has been published and may be used. | |
| Title | Nothings stb Image Encoding stb_image_write.h stbi_write_tga_core integer overflow | |
| First Time appeared |
Nothings
Nothings stb |
|
| Weaknesses | CWE-189 CWE-190 |
|
| CPEs | cpe:2.3:a:nothings:stb:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Nothings
Nothings stb |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-09-30T00:15:17.198Z
Reserved: 2026-09-29T17:08:48.761Z
Link: CVE-2026-102805
No data.
No data.
No data.
OpenCVE Enrichment
No data.
