Description
libungif library before 4.1.0 allows attackers to cause a denial of service via a crafted GIF file that triggers a null dereference.
CVSS vector
AV:N/AC:H/C:N/I:N/A:PExploitability: 4.9 | Impact: 2.9Complexity: High
Confidentiality: None
Integrity: None
Affected Packages3 packages
🔴Vulnerability Details
2GHSAGHSA-mj64-44v8-gvpx: libungif library before 4↗2022-05-01 ▶ OSVCVE-2005-2974: libungif library before 4↗2005-11-04 ▶ 📋Vendor Advisories
3Ubuntulibungif vulnerabilities↗2005-11-07 ▶ Red Hatgiflib/libunfig: NULL pointer dereference crash↗2005-11-03 ▶ DebianCVE-2005-2974: giflib - libungif library before 4.1.0 allows attackers to cause a denial of service via ...↗2005 ▶ 💬Community
4BugzillaCVE-2005-2974 giflib/libunfig: NULL pointer dereference crash↗2009-04-08 ▶ BugzillaCVE-2005-3350 giflib/libunfig: memory corruption via a crafted GIF↗2009-04-08 ▶ BugzillaCVE-2005-2974 Several libungif issues (CVE-2005-3350)↗2005-10-21 ▶ BugzillaCVE-2005-2974 Several libungif issues (CVE-2005-3350)↗2005-10-21 ▶