imPC@ndo IT

Tracker / CVE-2020-23922

CVE-2020-23922

High 7.1

An issue was discovered in giflib through 5.1.4. DumpScreen2RGB in gif2rgb.c has a heap-based buffer over-read.

Affected products and versions

apache bookkeeper
giflib_project giflib · … → 5.1.4

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References