PT-2023-29792 · Gifsicle+2 · Gifsicle+2

Timchan2001

·

Published

2020-10-30

·

Updated

2025-11-04

·

CVE-2023-46009

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions gifsicle version 1.94
Description A floating point exception (FPE) issue was discovered in gifsicle through the resize stream function at src/xform.c. This issue can cause problems when processing certain inputs.
Recommendations For gifsicle version 1.94, consider avoiding the use of the resize stream function until a patch is available. As a temporary workaround, restrict the input to the resize stream function to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2020-3169
ALT-PU-2022-2491
ALT-PU-2024-3605
CVE-2023-46009
MGASA-2024-0202
OPENSUSE-SU-2024:0146-1
OPENSUSE-SU-2024:13712-1

Affected Products

Alt Linux
Debian
Gifsicle