CVE-2019-17371 (https://nvd.nist.gov/vuln/detail/CVE-2019-17371): gif2png 2.5.13 has a memory leak in the writefile function.
It might just be simpler to package the Go port if the test failure is reproducible: bug 724518.