GIFLIB Project GIFLIB 3.1.1

CPE Details

GIFLIB Project GIFLIB 3.1.1
3.1.1
2018-06-28
15h04 +00:00
2018-06-28
15h04 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:giflib_project:giflib:3.1.1:*:*:*:*:*:*:*

Informations

Vendor

giflib_project

Product

giflib

Version

3.1.1

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2020-23922 2021-04-21 15h41 +00:00 An issue was discovered in giflib through 5.1.4. DumpScreen2RGB in gif2rgb.c has a heap-based buffer over-read.
7.1
High
CVE-2019-15133 2019-08-16 22h00 +00:00 In GIFLIB before 2019-02-16, a malformed GIF file triggers a divide-by-zero exception in the decoder function DGifSlurp in dgif_lib.c if the height field of the ImageSize data structure is equal to zero.
6.5
Medium
CVE-2018-11489 2018-05-26 16h00 +00:00 The DGifDecompressLine function in dgif_lib.c in GIFLIB (possibly version 3.0.x), as later shipped in cgif.c in sam2p 0.49.4, has a heap-based buffer overflow because a certain CrntCode array index is not checked. This will lead to a denial of service or possibly unspecified other impact.
8.8
High
CVE-2018-11490 2018-05-25 22h00 +00:00 The DGifDecompressLine function in dgif_lib.c in GIFLIB (possibly version 3.0.x), as later shipped in cgif.c in sam2p 0.49.4, has a heap-based buffer overflow because a certain "Private->RunningCode - 2" array index is not checked. This will lead to a denial of service or possibly unspecified other impact.
8.8
High
CVE-2016-3977 2016-04-21 12h00 +00:00 Heap-based buffer overflow in util/gif2rgb.c in gif2rgb in giflib 5.1.2 allows remote attackers to cause a denial of service (application crash) via the background color index in a GIF file.
5.5
Medium
CVE-2015-7555 2016-04-13 13h00 +00:00 Heap-based buffer overflow in giffix.c in giffix in giflib 5.1.1 allows attackers to cause a denial of service (program crash) via crafted image and logical screen width fields in a GIF file.
5.5
Medium