CVE-2023-48161

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Nov 22, 2023
Updated: Nov 29, 2023
CWE ID 787

Summary

CVE-2023-48161 is a buffer overflow vulnerability affecting GifLib version 5.2.1. An attacker can exploit this issue by providing malicious input to the DumpSCreen2RGB function in gif2rgb.c. Successful exploitation leads to the potential disclosure of sensitive information. Local attackers are the primary threat actors, making this a significant security concern for those using the affected software. The vulnerability can be mitigated through updates to a more recent and secure version of GifLib.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share