Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 655572 (CVE-2017-18120)

Summary: <media-gfx/gifsicle-1.91: Double-free in the read_gif function (CVE-2017-18120)
Product: Gentoo Security Reporter: Jeroen Roovers (RETIRED) <jer>
Component: VulnerabilitiesAssignee: Gentoo Security <security>
Status: RESOLVED FIXED    
Severity: minor CC: graphics+disabled
Priority: Normal Flags: stable-bot: sanity-check+
Version: unspecified   
Hardware: All   
OS: Linux   
Whiteboard: B3 [noglsa cve]
Package list:
media-gfx/gifsicle-1.91
Runtime testing required: ---

Description Jeroen Roovers (RETIRED) gentoo-dev 2018-05-12 12:33:18 UTC
NEWS.md:

Gifsicle NEWS
=============

## Version 1.91 – 5.Jan.2018

* Several security bug fixes with malicious GIFs.
Comment 1 Mikle Kolyada (RETIRED) archtester Gentoo Infrastructure gentoo-dev Security 2018-06-12 18:37:24 UTC
amd64 stable
Comment 2 Thomas Deutschmann (RETIRED) gentoo-dev 2018-08-23 01:42:39 UTC
x86 stable
Comment 3 Sergei Trofimovich (RETIRED) gentoo-dev 2018-08-26 18:54:28 UTC
ppc stable
Comment 4 Aaron Bauman (RETIRED) gentoo-dev 2018-11-25 01:41:29 UTC
@maintainers, please clean.