The iw_read_gif_file function in imagew-gif.c in libimageworsener.a in ImageWorsener 1.3.0 allows remote attackers to consume an amount of available memory via a crafted file.
The product does not properly control the allocation and maintenance of a limited resource.
Link | Tags |
---|---|
https://security.gentoo.org/glsa/201706-06 | third party advisory vendor advisory |
https://github.com/jsummers/imageworsener/issues/18 | patch issue tracking |