« Back to list

Lcdf

Lcdf Gifsicle: vulnerabilities and CVEs

Lcdf Gifsicle has 6 published vulnerabilities, 0 of them in the last 12 months. 1 are rated critical and 0 are listed by CISA as actively exploited.

CVEs6
Last 12 months0
Critical1
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2023-46009High (7.8)0.35%—Oct 18, 2023
gifsicle-1.94 was found to have a floating point exception (FPE) vulnerability via resize_stream at src/xform.c.
CVE-2023-44821Medium (5.5)0.31%—Oct 9, 2023
Gifsicle through 1.94, if deployed in a way that allows untrusted input to affect Gif_Realloc calls, might allow a denial of service (memory consumption). NOTE: this has been disputed by multiple parties because the…
CVE-2023-36193High (7.8)0.31%—Jun 23, 2023
Gifsicle v1.9.3 was discovered to contain a heap buffer overflow via the ambiguity_error component at /src/clp.c.
CVE-2020-19752High (7.5)1.6%—Sep 7, 2021
The find_color_or_error function in gifsicle 1.92 contains a NULL pointer dereference.
CVE-2017-18120High (7.8)1.8%—Feb 2, 2018
A double-free bug in the read_gif function in gifread.c in gifsicle 1.90 allows a remote attacker to cause a denial-of-service attack or unspecified other impact via a maliciously crafted file, because last_name is…
CVE-2017-1000421Critical (9.8)2.7%—Jan 2, 2018
Gifsicle gifview 1.89 and older is vulnerable to a use-after-free in the read_gif function resulting potential code execution