The DGifDecompressLine function in dgif_lib.c in GIFLIB (possibly version 3.0.x), as later shipped in cgif.c in sam2p 0.49.4, has a heap-based buffer overflow because a certain "Private->RunningCode - 2" array index is not checked. This will lead to a denial of service or possibly unspecified other impact.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2018-05-26T00:00:00

Updated: 2024-08-05T08:10:14.636Z

Reserved: 2018-05-26T00:00:00

Link: CVE-2018-11490

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2018-05-26T18:29:00.277

Modified: 2023-02-03T19:05:13.533

Link: CVE-2018-11490

cve-icon Redhat

Severity : Low

Publid Date: 2018-05-23T00:00:00Z

Links: CVE-2018-11490 - Bugzilla