Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 655572 (CVE-2017-18120) - <media-gfx/gifsicle-1.91: Double-free in the read_gif function (CVE-2017-18120)
Summary: <media-gfx/gifsicle-1.91: Double-free in the read_gif function (CVE-2017-18120)
Status: RESOLVED FIXED
Alias: CVE-2017-18120
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: Normal minor (vote)
Assignee: Gentoo Security
URL:
Whiteboard: B3 [noglsa cve]
Keywords:
Depends on:
Blocks:
 
Reported: 2018-05-12 12:33 UTC by Jeroen Roovers (RETIRED)
Modified: 2018-12-01 00:58 UTC (History)
1 user (show)

See Also:
Package list:
media-gfx/gifsicle-1.91
Runtime testing required: ---
stable-bot: sanity-check+


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Jeroen Roovers (RETIRED) gentoo-dev 2018-05-12 12:33:18 UTC
NEWS.md:

Gifsicle NEWS
=============

## Version 1.91 – 5.Jan.2018

* Several security bug fixes with malicious GIFs.
Comment 1 Mikle Kolyada (RETIRED) archtester Gentoo Infrastructure gentoo-dev Security 2018-06-12 18:37:24 UTC
amd64 stable
Comment 2 Thomas Deutschmann (RETIRED) gentoo-dev 2018-08-23 01:42:39 UTC
x86 stable
Comment 3 Sergei Trofimovich (RETIRED) gentoo-dev 2018-08-26 18:54:28 UTC
ppc stable
Comment 4 Aaron Bauman (RETIRED) gentoo-dev 2018-11-25 01:41:29 UTC
@maintainers, please clean.