PT-2016-3811 · Giflib+1 · Giflib+1
Hans Jerry Illikainen
·
Published
2016-01-15
·
Updated
2024-06-15
·
CVE-2015-7555
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
giflib version 5.1.1
Description
The issue is related to a heap-based buffer overflow in the giffix.c file of giflib, which can be triggered by attackers using crafted image and logical screen width fields in a GIF file, leading to a denial of service (program crash).
Recommendations
For giflib version 5.1.1, update to a newer version that contains a fix for this issue.
Exploit
Fix
DoS
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Suse
Giflib