Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hqvw-jgm8-f4v5

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

An issue was discovered in apng2gif 1.7. There is improper sanitization of user input causing huge memory allocations, resulting in a crash. This is related to the read_chunk function using the pChunk->size value (within the PNG file) to determine the amount of memory to allocate.

An issue was discovered in apng2gif 1.7. There is improper sanitization of user input causing huge memory allocations, resulting in a crash. This is related to the read_chunk function using the pChunk->size value (within the PNG file) to determine the amount of memory to allocate.

EPSS

Процентиль: 34%
0.00138
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 9 лет назад

An issue was discovered in apng2gif 1.7. There is improper sanitization of user input causing huge memory allocations, resulting in a crash. This is related to the read_chunk function using the pChunk->size value (within the PNG file) to determine the amount of memory to allocate.

CVSS3: 5.5
nvd
почти 9 лет назад

An issue was discovered in apng2gif 1.7. There is improper sanitization of user input causing huge memory allocations, resulting in a crash. This is related to the read_chunk function using the pChunk->size value (within the PNG file) to determine the amount of memory to allocate.

CVSS3: 5.5
debian
почти 9 лет назад

An issue was discovered in apng2gif 1.7. There is improper sanitizatio ...

EPSS

Процентиль: 34%
0.00138
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-20