CVE-2016-3177

Severity
9.8CRITICAL
EPSS
0.2%
top 58.74%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 23
Latest updateMay 17

Description

Multiple use-after-free and double-free vulnerabilities in gifcolor.c in GIFLIB 5.1.2 have unspecified impact and attack vectors.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

Debiangiflib< 5.1.4-0.1+3

Patches

🔴Vulnerability Details

4
GHSA
GHSA-7594-89x5-4cr4: Multiple use-after-free and double-free vulnerabilities in gifcolor2022-05-17
OSV
tomcat6, tomcat7 regression2017-02-02
OSV
CVE-2016-3177: Multiple use-after-free and double-free vulnerabilities in gifcolor2017-01-23
CVEList
CVE-2016-3177: Multiple use-after-free and double-free vulnerabilities in gifcolor2017-01-23

📋Vendor Advisories

2
Red Hat
giflib: Use-after-free in gifcolor utility2016-03-15
Debian
CVE-2016-3177: giflib - Multiple use-after-free and double-free vulnerabilities in gifcolor.c in GIFLIB ...2016

💬Community

3
Bugzilla
CVE-2016-3177 mingw-giflib: giflib: Use-after-free in gifcolor utility [fedora-all]2016-03-16
Bugzilla
CVE-2016-3177 giflib: Use-after-free in gifcolor utility [fedora-all]2016-03-16
Bugzilla
CVE-2016-3177 giflib: Use-after-free in gifcolor utility2016-03-03
CVE-2016-3177 (CRITICAL CVSS 9.8) | Multiple use-after-free and double- | cvebase.io