CVE-2019-19011: Null Pointer Dereference
Published Nov 16, 2019
·Updated
MiniUPnP ngiflib 0.4 has a NULL pointer dereference in GifIndexToTrueColor in ngiflib.c via a file that lacks a palette.
Affected Software
2 affected components
Miniupnp Project Ngiflib=0.4
Ngiflib Project Ngiflib=0.4
Event History
Nov 16, 2019
CVE Published
via MITRE·03:01 PM
Data Sourced
via MITRE·03:01 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-19011?
CVE-2019-19011 has been classified as a medium severity vulnerability due to its impact on application stability.
2
How do I fix CVE-2019-19011?
To fix CVE-2019-19011, update to a later version of ngiflib that addresses this NULL pointer dereference issue.
3
What applications are affected by CVE-2019-19011?
CVE-2019-19011 affects ngiflib version 0.4 in both ngiflib and MiniUPnP implementations.
4
What is the nature of the vulnerability in CVE-2019-19011?
CVE-2019-19011 is caused by a NULL pointer dereference when processing a GIF file that lacks a palette.
5
Are there any known exploits for CVE-2019-19011?
As of now, there are no publicly disclosed exploits specifically targeting CVE-2019-19011.