Security Advisory

CVE-2007-5378

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2007-10-12 01:00:00
Last updated 2024-08-07 15:31:58
Assigner canonical
CVSS score not scored
State PUBLISHED

Description

Buffer overflow in the FileReadGIF function in tkImgGIF.c for Tk Toolkit 8.4.12 and earlier, and 8.3.5 and earlier, allows user-assisted attackers to cause a denial of service (segmentation fault) via an animated GIF in which the first subimage is smaller than a subsequent subimage, which triggers the overflow in the ReadImage function, a different vulnerability than CVE-2007-5137.