https://seclists.org/oss-sec/2025/q2/21: CVE-2025-31344: giflib: The giflib open-source component has a buffer overflow vulnerability.
Published Apr 7, 2025
·Updated
Affected Software
1 affected component
giflib giflib<=5.2.2
Frequently Asked Questions
1
What is the severity of CVE-2025-31344?
CVE-2025-31344 has been classified with a high severity due to its buffer overflow vulnerability.
2
How do I fix CVE-2025-31344?
To fix CVE-2025-31344, upgrade giflib to version 5.2.3 or higher.
3
What is the impact of CVE-2025-31344 on affected systems?
The impact of CVE-2025-31344 includes potential arbitrary code execution and crash of applications using giflib.
4
Which versions of giflib are affected by CVE-2025-31344?
CVE-2025-31344 affects giflib versions 5.2.2 and below.
5
What is the cause of the vulnerability in CVE-2025-31344?
The cause of CVE-2025-31344 is a buffer overflow in the DumpScreen2RGB function when accessing the ColorMap.