Your submission was sent successfully! Close

CVE-2020-23922

Published: 21 April 2021

An issue was discovered in giflib through 5.1.4. DumpScreen2RGB in gif2rgb.c has a heap-based buffer over-read.

Notes

AuthorNote
ccdm94
no upstream fix found as of 2022-06-22.
Priority

Low

CVSS 3 base score: 7.1

Status

Package Release Status
giflib
Launchpad, Ubuntu, Debian
bionic Deferred
(2022-06-22)
focal Deferred
(2022-06-22)
groovy Ignored
(reached end-of-life)
hirsute Ignored
(reached end-of-life)
impish Ignored
(reached end-of-life)
jammy Deferred
(2022-06-22)
precise Does not exist

trusty Does not exist

upstream Needed

xenial Deferred
(2022-06-22)