CVE-2025-31344
Severity CVSS v4.0:
Pending analysis
Type:
CWE-122
Heap-based Buffer Overflow
Publication date:
14/04/2025
Last modified:
15/04/2025
Description
Heap-based Buffer Overflow vulnerability in openEuler giflib on Linux. This vulnerability is associated with program files gif2rgb.C.<br />
<br />
This issue affects giflib: through 5.2.2.
Impact
Base Score 3.x
7.30
Severity 3.x
HIGH
References to Advisories, Solutions, and Tools
- https://gitee.com/src-openeuler/giflib/pulls/54
- https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2025-1292
- http://www.openwall.com/lists/oss-security/2025/04/07/3
- http://www.openwall.com/lists/oss-security/2025/04/07/4
- http://www.openwall.com/lists/oss-security/2025/04/07/5
- http://www.openwall.com/lists/oss-security/2025/04/07/6
- http://www.openwall.com/lists/oss-security/2025/04/08/1
- http://www.openwall.com/lists/oss-security/2025/04/09/5
- http://www.openwall.com/lists/oss-security/2025/04/09/7
- http://www.openwall.com/lists/oss-security/2025/04/10/1