VDB
CVE-2005-3350
CVE-2005-3350
PUBLISHED
CVSS 7.5 HIGH
libungif library before 4.1.0 allows attackers to corrupt memory and possibly execute arbitrary code via a crafted GIF file that leads to an out-of-bounds write.
EPSS 4.42% · 90.4th percentile
Risk Scores
CVSS 2.0
7.5
EPSS Score
4.42%
90.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| libungif | libungif | 0, 4.1.3 |
| n/a | n/a | * |
Timeline
- Nov 4, 2005 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 19, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Feb 13, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- Jul 18, 2023 EPSS Score
References
- 17508 third-party-advisory
- http://bugs.gentoo.org/show_bug.cgi?id=109997 url
- https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=171413 url
- GLSA-200511-03 vendor-advisory
- DSA-890 vendor-advisory
- MDKSA-2005:207 vendor-advisory
- 17438 third-party-advisory
- FLSA-2006:174479 vendor-advisory
- 34872 third-party-advisory
- 17488 third-party-advisory
- 17462 third-party-advisory
- 35164 third-party-advisory
- http://scary.beasts.org/security/CESA-2005-007.txt technical
- http://secunia.com/advisories/17436 technical
- http://secunia.com/advisories/17442 technical
- http://www.osvdb.org/20471 technical
- http://www.redhat.com/support/errata/RHSA-2009-0444.html technical
- https://www.redhat.com/archives/fedora-package-announce/2009-May/msg00771.html technical
- http://secunia.com/advisories/17482 technical
- http://secunia.com/advisories/17559 technical
…and 10 more