CVE-2017-1000421
published 2018-01-02CVE-2017-1000421: Gifsicle gifview 1.89 and older is vulnerable to a use-after-free in the read_gif function resulting potential code execution
PriorityP346critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
2.67%
84.0th percentile
Gifsicle gifview 1.89 and older is vulnerable to a use-after-free in the read_gif function resulting potential code execution
Affected
15 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | gifsicle | < gifsicle 1.90-1 (bookworm) | gifsicle 1.90-1 (bookworm) |
| debian | gifsicle | < gifsicle 1.91-1 (bookworm) | gifsicle 1.91-1 (bookworm) |
| lcdf | gifsicle | <= 1.89 | — |
| lcdf | gifsicle | — | — |
| lcdf | gifsicle | >= 0 < 1.91-1 | 1.91-1 |
| lcdf | gifsicle | >= 0 < 1.90-1 | 1.90-1 |
| lcdf | gifsicle | >= 0 < 1.91-1 | 1.91-1 |
| lcdf | gifsicle | >= 0 < 1.90-1 | 1.90-1 |
| lcdf | gifsicle | >= 0 < 1.91-1 | 1.91-1 |
| lcdf | gifsicle | >= 0 < 1.90-1 | 1.90-1 |
| lcdf | gifsicle | >= 0 < 1.91-1 | 1.91-1 |
| lcdf | gifsicle | >= 0 < 1.90-1 | 1.90-1 |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-vp7h-g9mh-c77g: Gifsicle gifview 1
ghsa_unreviewed·2022-05-14
CVE-2017-1000421 [CRITICAL] CWE-416 GHSA-vp7h-g9mh-c77g: Gifsicle gifview 1
Gifsicle gifview 1.89 and older is vulnerable to a use-after-free in the read_gif function resulting potential code execution
GHSA
GHSA-6f9j-p2gf-3f72: A double-free bug in the read_gif function in gifread
ghsa_unreviewed·2022-05-14·CVSS 9.8
CVE-2017-18120 [CRITICAL] CWE-415 GHSA-6f9j-p2gf-3f72: A double-free bug in the read_gif function in gifread
A double-free bug in the read_gif function in gifread.c in gifsicle 1.90 allows a remote attacker to cause a denial-of-service attack or unspecified other impact via a maliciously crafted file, because last_name is mishandled, a different vulnerability than CVE-2017-1000421.
OSV
CVE-2017-18120: A double-free bug in the read_gif function in gifread
osv·2018-02-02·CVSS 9.8
CVE-2017-18120 [CRITICAL] CVE-2017-18120: A double-free bug in the read_gif function in gifread
A double-free bug in the read_gif function in gifread.c in gifsicle 1.90 allows a remote attacker to cause a denial-of-service attack or unspecified other impact via a maliciously crafted file, because last_name is mishandled, a different vulnerability than CVE-2017-1000421.
OSV
CVE-2017-1000421: Gifsicle gifview 1
osv·2018-01-02·CVSS 9.8
CVE-2017-1000421 [CRITICAL] CVE-2017-1000421: Gifsicle gifview 1
Gifsicle gifview 1.89 and older is vulnerable to a use-after-free in the read_gif function resulting potential code execution
Ubuntu
Gifsicle vulnerabilities
vendor_ubuntu·2021-03-15
CVE-2017-18120 Gifsicle vulnerabilities
Title: Gifsicle vulnerabilities
Summary: Gifsicle could be made to crash or run programs as an administrator
if it opened a specially crafted file.
It was discovered that Gifsicle did not properly handle certain input. If a
user were tricked into opening a malicious GIF, an attacker could
potentially execute arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Debian
CVE-2017-1000421: gifsicle - Gifsicle gifview 1.89 and older is vulnerable to a use-after-free in the read_gi...
vendor_debian·2017·CVSS 9.8
CVE-2017-1000421 [CRITICAL] CVE-2017-1000421: gifsicle - Gifsicle gifview 1.89 and older is vulnerable to a use-after-free in the read_gi...
Gifsicle gifview 1.89 and older is vulnerable to a use-after-free in the read_gif function resulting potential code execution
Scope: local
bookworm: resolved (fixed in 1.90-1)
bullseye: resolved (fixed in 1.90-1)
forky: resolved (fixed in 1.90-1)
sid: resolved (fixed in 1.90-1)
trixie: resolved (fixed in 1.90-1)
Debian
CVE-2017-18120: gifsicle - A double-free bug in the read_gif function in gifread.c in gifsicle 1.90 allows ...
vendor_debian·2017·CVSS 9.8
CVE-2017-18120 [CRITICAL] CVE-2017-18120: gifsicle - A double-free bug in the read_gif function in gifread.c in gifsicle 1.90 allows ...
A double-free bug in the read_gif function in gifread.c in gifsicle 1.90 allows a remote attacker to cause a denial-of-service attack or unspecified other impact via a maliciously crafted file, because last_name is mishandled, a different vulnerability than CVE-2017-1000421.
Scope: local
bookworm: resolved (fixed in 1.91-1)
bullseye: resolved (fixed in 1.91-1)
forky: resolved (fixed in 1.91-1)
sid: resolved (fixed in 1.91-1)
trixie: resolved (fixed in 1.91-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2017-18120 gifsicle: Double-free in the read_gif function
bugzilla·2018-02-05·CVSS 9.8
CVE-2017-18120 [CRITICAL] CVE-2017-18120 gifsicle: Double-free in the read_gif function
CVE-2017-18120 gifsicle: Double-free in the read_gif function
A double-free bug in the read_gif function in gifread.c in gifsicle 1.90 allows a remote attacker to cause a denial-of-service attack or unspecified other impact via a maliciously crafted file, because last_name is mishandled, a different vulnerability than CVE-2017-1000421.
Upstream issue:
https://github.com/kohler/gifsicle/issues/117
Upstream patch:
https://github.com/kohler/gifsicle/commit/118a46090c50829dc543179019e6140e1235f909
Discussion:
Created gifsicle tracking bugs for this issue:
Affects: epel-all [bug 1542036]
Affects: fedora-all [bug 1542037]
---
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to
Bugzilla
CVE-2017-1000421 gifsicle: use-after-free in the read_gif function [fedora-all]
bugzilla·2018-01-03·CVSS 9.8
CVE-2017-1000421 [CRITICAL] CVE-2017-1000421 gifsicle: use-after-free in the read_gif function [fedora-all]
CVE-2017-1000421 gifsicle: use-after-free in the read_gif function [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versio
Bugzilla
CVE-2017-1000421 gifsicle: use-after-free in the read_gif function [epel-all]
bugzilla·2018-01-03·CVSS 9.8
CVE-2017-1000421 [CRITICAL] CVE-2017-1000421 gifsicle: use-after-free in the read_gif function [epel-all]
CVE-2017-1000421 gifsicle: use-after-free in the read_gif function [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions o
Bugzilla
CVE-2017-1000421 gifsicle: use-after-free in the read_gif function
bugzilla·2018-01-03·CVSS 9.8
CVE-2017-1000421 [CRITICAL] CVE-2017-1000421 gifsicle: use-after-free in the read_gif function
CVE-2017-1000421 gifsicle: use-after-free in the read_gif function
Gifsicle gifview 1.89 and older is vulnerable to a use-after-free in the read_gif function resulting potential code execution.
Upstream bug:
https://github.com/kohler/gifsicle/issues/114
Upstream patch:
https://github.com/kohler/gifsicle/commit/81fd7823f6d9c85ab598bc850e40382068361185
Discussion:
Created gifsicle tracking bugs for this issue:
Affects: epel-all [bug 1530541]
Affects: fedora-all [bug 1530540]
---
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.
https://github.com/kohler/gifsicle/issues/114https://lists.debian.org/debian-lts-announce/2018/01/msg00006.htmlhttps://www.debian.org/security/2018/dsa-4084https://github.com/kohler/gifsicle/issues/114https://lists.debian.org/debian-lts-announce/2018/01/msg00006.htmlhttps://www.debian.org/security/2018/dsa-4084
2018-01-02
Published