Описание
giflib v5.2.1 was discovered to contain a segmentation fault via the component getarg.c.
A flaw was found in giflib. This vulnerability, located in the getarg.c component, can lead to a segmentation fault when processing specially crafted input. This issue can result in a Denial of Service (DoS), making the application unavailable.
Отчет
This vulnerability is a segmentation fault triggered when the library's argument-parsing utility encounters unexpected input or malformed command-line arguments. This leads to a local Denial of Service (DoS), causing the utility to crash during execution. Because the impact is limited to the local process and does not facilitate unauthorized access or persistent service disruption, the overall security risk is considered low.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 6 | giflib | Out of support scope | ||
| Red Hat Enterprise Linux 7 | giflib | Out of support scope | ||
| Red Hat Enterprise Linux 8 | giflib | Fix deferred | ||
| Red Hat Enterprise Linux 9 | giflib | Fix deferred |
Показывать по
Дополнительная информация
Статус:
EPSS
5.5 Medium
CVSS3
Связанные уязвимости
giflib v5.2.1 was discovered to contain a segmentation fault via the component getarg.c.
giflib v5.2.1 was discovered to contain a segmentation fault via the component getarg.c.
giflib v5.2.1 was discovered to contain a segmentation fault via the component getarg.c.
giflib v5.2.1 was discovered to contain a segmentation fault via the c ...
giflib v5.2.1 was discovered to contain a segmentation fault via the component getarg.c.
EPSS
5.5 Medium
CVSS3