First published: Wed Jul 19 2023(Updated: )
ngiflib commit 5e7292 was discovered to contain an infinite loop via the function DecodeGifImg at ngiflib.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MiniUPnP |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-37748 has been classified with a moderate severity level due to its potential to cause an infinite loop in the affected software.
To mitigate CVE-2023-37748, update ngiflib to the latest version where the vulnerability has been addressed.
The impact of CVE-2023-37748 includes the possibility of application hang or crash due to an infinite loop during GIF image decoding.
CVE-2023-37748 affects ngiflib, specifically versions associated with MiniUPnP projects.
CVE-2023-37748 was discovered during review of the ngiflib code, specifically within the DecodeGifImg function.