First published: Sat May 26 2018(Updated: )
Last updated 24 July 2024
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GifLib Project GifLib | >=3.0<=3.1.1 | |
Sam2p Project Sam2p | =0.49.4 | |
Debian Debian Linux | =10.0 | |
Canonical Ubuntu Linux | =16.04 | |
Canonical Ubuntu Linux | =18.04 | |
Canonical Ubuntu Linux | =19.04 | |
debian/giflib | 5.1.9-2 5.2.1-2.5 5.2.2-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-11490 is a vulnerability in GIFLIB, possibly version 3.0.x, as later shipped in sam2p 0.49.4, that allows a heap-based buffer overflow and can lead to denial of service or other unspecified impacts.
CVE-2018-11490 has a severity rating of 8.8 (high).
CVE-2018-11490 affects the giflib package with versions 5.1.4-3+deb10u1, 5.1.9-2, and 5.2.1-2.5 on Debian, and 5.1.4-2ubuntu0.1 on Ubuntu 18.04 (bionic) and 5.1.4-3ubuntu0.1 on Ubuntu 19.04 (disco).
To fix CVE-2018-11490 on Debian, update the giflib package to version 5.1.4-3+deb10u1 or higher.
To fix CVE-2018-11490 on Ubuntu 18.04 (bionic), update the giflib package to version 5.1.4-2ubuntu0.1 or higher. To fix it on Ubuntu 19.04 (disco), update the giflib package to version 5.1.4-3ubuntu0.1 or higher.