PT-2018-6685 · Gifsicle+2 · Gifsicle+2

Hpfnop

·

Published

2018-02-02

·

Updated

2024-03-13

·

CVE-2017-18120

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: gifsicle version 1.90
Description: A double-free bug in the read gif function in gifread.c allows a remote attacker to cause a denial-of-service attack or unspecified other impact via a maliciously crafted file, because last name is mishandled.
Recommendations: For version 1.90, update to a version that fixes the double-free bug in the read gif function to prevent potential denial-of-service attacks or other impacts.

Fix

DoS

Double Free

Weakness Enumeration

Related Identifiers

ALT-PU-2020-3169
ALT-PU-2022-2491
ALT-PU-2024-3605
CVE-2017-18120
MGASA-2018-0280
USN-4803-1

Affected Products

Alt Linux
Ubuntu
Gifsicle