stb
nothings- Product type
- Other
- Catalog vulnerabilities
- 24
Severity across 24 analyzed records
en
Verify to analyze this security profile
As of 09/14/2026, within CyStack's analyzed data, stb has 0 security vulnerabilities published in the last 90 days. Of these, 0 are rated High or Critical. None of these vulnerabilities is listed in the CISA KEV catalog. CyStack recommends that organizations and individual users remediate applicable vulnerabilities as soon as possible.
CyStack does not yet have sufficient official-source data to identify the latest version of stb and determine which vulnerabilities affect that version.
| Vulnerability | Exploitation status | Fix | Published | Severity |
|---|---|---|---|---|
CVE-2026-5317Nothings stb stb_vorbis.c start_decoder out-of-bounds write | Exploitation statusPublic exploit | FixNot confirmed | Published04/02/2026 | SeverityMedium |
CVE-2026-5316Nothings stb stb_vorbis.c setup_free allocation of resources | Exploitation statusPublic exploit | FixNot confirmed | Published04/02/2026 | SeverityMedium |
CVE-2026-5315Nothings stb TTF File stb_truetype.h stbtt__buf_get8 out-of-bounds | Exploitation statusPublic exploit | FixNot confirmed | Published04/01/2026 | SeverityMedium |
CVE-2026-5314Nothings stb TTF File stb_truetype.h stbtt_InitFont_internal out-of-bounds | Exploitation statusPublic exploit | FixNot confirmed | Published04/01/2026 | SeverityMedium |
CVE-2026-5313Nothings stb GIF Decoder stb_image.h stbi__gif_load_next denial of service | Exploitation statusPublic exploit | FixNot confirmed | Published04/01/2026 | SeverityMedium |
CVE-2026-5186Nothings stb Multi-frame GIF File stb_image.h stbi__load_gif_main double free | Exploitation statusNot known exploited | FixNot confirmed | Published03/31/2026 | SeverityMedium |
CVE-2025-3409Nothings stb stb_include_string stack-based overflow | Exploitation statusNot known exploited | FixNot confirmed | Published04/08/2025 | SeverityMedium |
CVE-2025-3408Nothings stb stb_dupreplace integer overflow | Exploitation statusPublic exploit | FixNot confirmed | Published04/08/2025 | SeverityMedium |
CVE-2025-3407Nothings stb stbhw_build_tileset_from_image out-of-bounds | Exploitation statusNot known exploited | FixNot confirmed | Published04/08/2025 | SeverityMedium |
CVE-2025-3406Nothings stb Header Array stbhw_build_tileset_from_image out-of-bounds | Exploitation statusNot known exploited | FixNot confirmed | Published04/08/2025 | SeverityMedium |
CVE-2023-45682Wild address read in vorbis_decode_packet_rest in stb_vorbis | Exploitation statusPublic exploit | FixNot confirmed | Published10/20/2023 | SeverityMedium |
CVE-2023-45681Out of bounds heap buffer write in stb_vorbis | Exploitation statusPublic exploit | FixNot confirmed | Published10/20/2023 | SeverityHigh |
CVE-2023-45680Null pointer dereference in vorbis_deinit in stb_vorbis | Exploitation statusPublic exploit | FixNot confirmed | Published10/20/2023 | SeverityMedium |
CVE-2023-45679Attempt to free an uninitialized memory pointer in vorbis_deinit in stb_vorbis | Exploitation statusPublic exploit | FixNot confirmed | Published10/20/2023 | SeverityHigh |
CVE-2023-45678Off-by-one heap buffer write in start_decoder in stb_vorbis | Exploitation statusPublic exploit | FixNot confirmed | Published10/20/2023 | SeverityMedium |
CVE-2023-45677Heap buffer out of bounds write in start_decoder in stb_vorbis | Exploitation statusPublic exploit | FixNot confirmed | Published10/20/2023 | SeverityHigh |
CVE-2023-45676Multi-byte write heap buffer overflow in start_decoder in stb_vorbis | Exploitation statusPublic exploit | FixNot confirmed | Published10/20/2023 | SeverityHigh |
CVE-2023-456750 byte write heap buffer overflow in start_decoder in stb_vorbis | Exploitation statusPublic exploit | FixNot confirmed | Published10/20/2023 | SeverityMedium |
CVE-2023-45667Null pointer dereference because of an uninitialized variable in stb_image | Exploitation statusPublic exploit | FixNot confirmed | Published10/20/2023 | SeverityMedium |
CVE-2023-45666Possible double-free or memory leak in stbi__load_gif_main in stb_image | Exploitation statusPublic exploit | FixNot confirmed | Published10/20/2023 | SeverityHigh |
CVE-2023-45664Double-free in stbi__load_gif_main_outofmem in stb_image | Exploitation statusPublic exploit | FixNot confirmed | Published10/20/2023 | SeverityHigh |
CVE-2023-45663Disclosure of uninitialized memory in stbi__tga_load in stb_image | Exploitation statusPublic exploit | FixNot confirmed | Published10/20/2023 | SeverityMedium |
CVE-2023-45662Multi-byte read heap buffer overflow in stbi__vertical_flip in stb_image | Exploitation statusPublic exploit | FixNot confirmed | Published10/20/2023 | SeverityMedium |
CVE-2023-45661Wild address read in stbi__gif_load_next in stb_image | Exploitation statusPublic exploit | FixNot confirmed | Published10/20/2023 | SeverityMedium |
CyStack VulnScan continuously discovers assets, validates vulnerabilities, and helps security teams prioritize remediation across the organization.
Explore CyStack VulnScan