USN-6824-1: GIFLIB vulnerabilities
Published Jun 10, 2024
·Updated
It was discovered that GIFLIB incorrectly handled certain GIF files. An attacker could possibly use this issue to cause a denial of service. (CVE-2021-40633, CVE-2022-28506, CVE-2023-39742)
Affected Software
10 affected componentsFixes available
All of the following
ubuntu/giflib-tools<5.2.1-2.5ubuntu0.1
5.2.1-2.5ubuntu0.1
Ubuntu Ubuntu=23.10
All of the following
ubuntu/giflib-tools<5.1.9-2ubuntu0.1
5.1.9-2ubuntu0.1
Ubuntu Ubuntu=22.04
All of the following
ubuntu/giflib-tools<5.1.9-1ubuntu0.1
5.1.9-1ubuntu0.1
Ubuntu Ubuntu=20.04
All of the following
ubuntu/giflib-tools<5.1.4-2ubuntu0.1+esm1
5.1.4-2ubuntu0.1+esm1
Ubuntu Ubuntu=18.04
All of the following
ubuntu/giflib-tools<5.1.4-0.3~16.04.1+esm1
5.1.4-0.3~16.04.1+esm1
Ubuntu Ubuntu=16.04
Event History
Jun 10, 2024
Advisory Published
via Ubuntu·12:00 AM
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of USN-6824-1?
The severity of USN-6824-1 is related to potential denial of service vulnerabilities in GIFLIB.
2
How do I fix USN-6824-1?
To fix USN-6824-1, upgrade the giflib-tools package to the specified remedied versions for your Ubuntu release.
3
Which versions of Ubuntu are affected by USN-6824-1?
USN-6824-1 affects Ubuntu versions 16.04, 18.04, 20.04, 22.04, and 23.10.
4
What vulnerabilities are associated with USN-6824-1?
USN-6824-1 is associated with CVE-2021-40633, CVE-2022-28506, and CVE-2023-39742.
5
Can I still use GIFLIB if I apply the patch for USN-6824-1?
Yes, applying the patch will fix the vulnerabilities and allow you to continue using GIFLIB securely.