VDB
BDU%3A2025-08561
BDU%3A2025-08561
PUBLISHED
CVSS 6.099999904632568 MEDIUM
Уязвимость функции DumpScreen2RGB() (gif2rgb.c) библиотеки для работы с GIF файлами GIFLIB, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
6.099999904632568
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc., Сообщество свободного программного обеспечения, ООО «Ред Софт», ООО «РусБИТех-Астра», Novell Inc., The GIFLIB project | Red Hat Enterprise Linux, Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), Astra Linux Special Edition (запись в едином реестре российских программ №369), SUSE Linux Enterprise Server for SAP Applications, Red Hat build of OpenJDK, SUSE Manager Retail Branch Server, SUSE Manager Proxy, SUSE Manager Server, SUSE Enterprise Storage, Suse Linux Enterprise Server, SUSE Linux Enterprise High Performance Computing, Suse Linux Enterprise Desktop, SUSE Linux Enterprise Module for Basesystem, OpenSUSE Leap, GIFLIB |
Timeline
- Jul 16, 2025 CVE Published
- Oct 29, 2025 CVE Updated
References
- http://www.openwall.com/lists/oss-security/2025/04/07/3 url
- http://www.openwall.com/lists/oss-security/2025/04/09/7 url
- https://security-tracker.debian.org/tracker/CVE-2025-31344 advisory
- https://www.suse.com/security/cve/CVE-2025-31344.html advisory
- http://www.openwall.com/lists/oss-security/2025/04/07/6 url
- https://gitee.com/src-openeuler/giflib/pulls/54 url
- https://redos.red-soft.ru/support/secure/uyazvimosti/uyazvimost-giflib-cve-2025-31344/?sphrase_id=1074143 advisory
- http://www.openwall.com/lists/oss-security/2025/04/07/4 url
- http://www.openwall.com/lists/oss-security/2025/04/07/5 url
- http://www.openwall.com/lists/oss-security/2025/04/08/1 url
- http://www.openwall.com/lists/oss-security/2025/04/09/5 url
- http://www.openwall.com/lists/oss-security/2025/04/10/1 url
- https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2025-1292 url
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2025-0923SE17 url
- https://wiki.astralinux.ru/astra-linux-se47-bulletin-2025-1020SE47 url
- https://access.redhat.com/security/cve/CVE-2025-31344 advisory
- https://wiki.astralinux.ru/astra-linux-se18-bulletin-2025-0811SE18 advisory