First published: Sat Nov 16 2019(Updated: )
MiniUPnP ngiflib 0.4 has a NULL pointer dereference in GifIndexToTrueColor in ngiflib.c via a file that lacks a palette.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ngiflib | =0.4 | |
MiniUPnP | =0.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-19011 has been classified as a medium severity vulnerability due to its impact on application stability.
To fix CVE-2019-19011, update to a later version of ngiflib that addresses this NULL pointer dereference issue.
CVE-2019-19011 affects ngiflib version 0.4 in both ngiflib and MiniUPnP implementations.
CVE-2019-19011 is caused by a NULL pointer dereference when processing a GIF file that lacks a palette.
As of now, there are no publicly disclosed exploits specifically targeting CVE-2019-19011.