Description
libungif library before 4.1.0 allows attackers to corrupt memory and possibly execute arbitrary code via a crafted GIF file that leads to an out-of-bounds write.
CVSS vector
AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4 Affected Packages3 packages
🔴Vulnerability Details
2GHSAGHSA-mh2j-cpx3-ww24: libungif library before 4↗2022-05-01 ▶ OSVCVE-2005-3350: libungif library before 4↗2005-11-04 ▶ 📋Vendor Advisories
3Ubuntulibungif vulnerabilities↗2005-11-07 ▶ Red Hatgiflib/libunfig: memory corruption via a crafted GIF↗2005-11-03 ▶ DebianCVE-2005-3350: giflib - libungif library before 4.1.0 allows attackers to corrupt memory and possibly ex...↗2005 ▶ 💬Community
3BugzillaCVE-2005-3350 giflib/libunfig: memory corruption via a crafted GIF↗2009-04-08 ▶ BugzillaCVE-2005-2974 Several libungif issues (CVE-2005-3350)↗2005-10-21 ▶ BugzillaCVE-2005-2974 Several libungif issues (CVE-2005-3350)↗2005-10-21 ▶