CVE-2018-10972: Buffer Overflow
An issue was discovered in Free Lossless Image Format (FLIF) 0.3. The TransformPaletteC::process function in transform/paletteC.hpp allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted file.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-10972?
CVE-2018-10972 is a vulnerability in the Free Lossless Image Format (FLIF) 0.3 that allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted file.
What is the severity of CVE-2018-10972?
The severity of CVE-2018-10972 is high, with a severity score of 7.8.
How does CVE-2018-10972 affect Flif Free Lossless Image Format?
CVE-2018-10972 affects Flif Free Lossless Image Format version 0.3.
How can CVE-2018-10972 be fixed?
To fix CVE-2018-10972, users should update to the latest version of Flif Free Lossless Image Format.
Where can I find more information about CVE-2018-10972?
More information about CVE-2018-10972 can be found at the following link: [https://github.com/FLIF-hub/FLIF/issues/503](https://github.com/FLIF-hub/FLIF/issues/503)