Vulnerability CVE-2018-11507: Information

Description

An issue was discovered in Free Lossless Image Format (FLIF) 0.3. An attacker can trigger a long loop in image_load_pnm in image/image-pnm.cpp.

Severity: MEDIUM (6.5) Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Published: May 28, 2018
Modified: Aug. 24, 2020
Error type identifier: CWE-834

Fixed packages

Package name
Branch
Fixed in version
Version from repository
Errata ID
Task #
State
libflifsisyphus0.4-alt10.4-alt1ALT-PU-2024-4694-2343861Fixed
libflifsisyphus_e2k0.4-alt10.4-alt1ALT-PU-2024-4801-1-Fixed
libflifsisyphus_riscv640.4-alt10.4-alt1ALT-PU-2024-4798-1-Fixed
libflifsisyphus_loongarch640.4-alt10.4-alt1ALT-PU-2024-4780-1-Fixed
libflifc10f10.4-alt10.4-alt1ALT-PU-2024-4911-2344218Fixed
libflifc9f20.4-alt10.4-alt1ALT-PU-2024-4724-2343880Fixed
libflifp110.4-alt10.4-alt1ALT-PU-2024-4694-2343861Fixed

References to Advisories, Solutions, and Tools

Hyperlink
Resource
https://github.com/FLIF-hub/FLIF/issues/509
  • Exploit
  • Third Party Advisory
    1. Configuration 1

      cpe:2.3:a:flif:flif:0.3:*:*:*:*:*:*:*