Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-11489

Опубликовано: 26 мая 2018
Источник: nvd
CVSS3: 8.8
CVSS2: 6.8
EPSS Низкий

Описание

The DGifDecompressLine function in dgif_lib.c in GIFLIB (possibly version 3.0.x), as later shipped in cgif.c in sam2p 0.49.4, has a heap-based buffer overflow because a certain CrntCode array index is not checked. This will lead to a denial of service or possibly unspecified other impact.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:giflib_project:giflib:*:*:*:*:*:*:*:*
Версия от 3.0 (включая) до 3.1.1 (включая)
cpe:2.3:a:sam2p_project:sam2p:0.49.4:*:*:*:*:*:*:*

EPSS

Процентиль: 66%
0.00503
Низкий

8.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-129

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 7 лет назад

The DGifDecompressLine function in dgif_lib.c in GIFLIB (possibly version 3.0.x), as later shipped in cgif.c in sam2p 0.49.4, has a heap-based buffer overflow because a certain CrntCode array index is not checked. This will lead to a denial of service or possibly unspecified other impact.

CVSS3: 3.3
redhat
больше 7 лет назад

The DGifDecompressLine function in dgif_lib.c in GIFLIB (possibly version 3.0.x), as later shipped in cgif.c in sam2p 0.49.4, has a heap-based buffer overflow because a certain CrntCode array index is not checked. This will lead to a denial of service or possibly unspecified other impact.

CVSS3: 8.8
debian
больше 7 лет назад

The DGifDecompressLine function in dgif_lib.c in GIFLIB (possibly vers ...

CVSS3: 8.8
github
больше 3 лет назад

The DGifDecompressLine function in dgif_lib.c in GIFLIB (possibly version 3.0.x), as later shipped in cgif.c in sam2p 0.49.4, has a heap-based buffer overflow because a certain CrntCode array index is not checked. This will lead to a denial of service or possibly unspecified other impact.

EPSS

Процентиль: 66%
0.00503
Низкий

8.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-129