UBUNTU-CVE-2022-1507
Dashboard / Vulnerabilities / UBUNTU-CVE-2022-1507
Summary:
Details: chafa: NULL Pointer Dereference in function gif_internal_decode_frame at libnsgif.c:599 allows attackers to cause a denial of service (crash) via a crafted input file. in GitHub repository hpjansson/chafa prior to 1.10.2. chafa: NULL Pointer Dereference in function gif_internal_decode_frame at libnsgif.c:599 allows attackers to cause a denial of service (crash) via a crafted input file.
References: https://ubuntu.com/security/CVE-2022-1507, https://huntr.dev/bounties/104d8c5d-cac5-4baa-9ac9-291ea0bcab95/, https://github.com/hpjansson/chafa/commit/e4b777c7b7c144cd16a0ea96108267b1004fe6c9, https://github.com/hpjansson/chafa/commit/e4b777c7b7c144cd16a0ea96108267b1004fe6c9, https://huntr.dev/bounties/104d8c5d-cac5-4baa-9ac9-291ea0bcab95, https://www.cve.org/CVERecord?id=CVE-2022-1507
Affected packages
Package
Name: chafa
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=focal
Affected ranges
Type: ECOSYSTEM
Events:
