/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-6p3m-r498-4g7g

Published

Last updated

https://images.chainguard.dev/security/CGA-6p3m-r498-4g7g
Package

giflib

RepositoryWolfi
Latest Update
Pending upstream fix
Aliases
  • CVE-2024-45993
  • GHSA-pp67-vh85-488h

Severity

Unknown

References

  • https://nvd.nist.gov/vuln/detail/CVE-2024-45993

Updates

Status

Pending upstream fix

Impact

As detailed in the original PoC (https://gitlab.com/mthandazo/project-pov), CVE-2025-45993 only affects the gif2rgb utility. This utility is not included in our giflib package, but is instead provided by the giflib-utils subpackage. The upstream project have not yet released a fix (see https://sourceforge.net/p/giflib/bugs/188/)

Status

Under investigation


Safe Source for Open Source™
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing