Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
CVE-2023-39742
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2023-39742
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-39742.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-39742
Downstream
ALPINE-CVE-2023-39742
BELL-CVE-2023-39742
DEBIAN-CVE-2023-39742
ECHO-b401-d90a-c280
OESA-2023-1675
SUSE-SU-2024:2607-1
UBUNTU-CVE-2023-39742
USN-6824-1
Related
MGASA-2023-0278
SUSE-SU-2024:2607-1
Published
2023-08-25T14:15:09Z
Modified
2025-09-19T14:38:50.080255Z
Severity
5.5 (Medium)
CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS Calculator
Summary
[none]
Details
giflib v5.2.1 was discovered to contain a segmentation fault via the component getarg.c.
References
https://gist.github.com/huanglei3/ec9090096aa92445cf0a8baa8e929084
https://sourceforge.net/p/giflib/bugs/166/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/O4RLSFGPBPR3FMIUJCWPGVIYIU35YGQX/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OPNBOB65TEA4ZEPLVENI26BY4LEX7TEF/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/T5WO6WL2TCGO6T4VKGACDIVSZI74WJAU/
https://security.alpinelinux.org/vuln/CVE-2023-39742
Affected packages
Alpine:v3.17
giflib
Package
Name
giflib
Purl
pkg:apk/alpine/giflib?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
5.2.2-r0
Affected versions
4.*
4.1.6-r0
4.1.6-r1
4.1.6-r2
4.1.6-r3
4.1.6-r4
4.1.6-r5
4.1.6-r6
4.1.6-r7
4.2.1-r0
5.*
5.0.4-r0
5.0.5-r0
5.0.6-r0
5.1.0-r0
5.1.1-r0
5.1.2-r0
5.1.4-r0
5.1.4-r1
5.1.4-r2
5.1.9-r0
5.2.1-r0
5.2.1-r1
5.2.1-r2
Alpine:v3.18
giflib
Package
Name
giflib
Purl
pkg:apk/alpine/giflib?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
5.2.2-r0
Affected versions
4.*
4.1.6-r0
4.1.6-r1
4.1.6-r2
4.1.6-r3
4.1.6-r4
4.1.6-r5
4.1.6-r6
4.1.6-r7
4.2.1-r0
5.*
5.0.4-r0
5.0.5-r0
5.0.6-r0
5.1.0-r0
5.1.1-r0
5.1.2-r0
5.1.4-r0
5.1.4-r1
5.1.4-r2
5.1.9-r0
5.2.1-r0
5.2.1-r1
5.2.1-r2
5.2.1-r3
5.2.1-r4
Alpine:v3.19
giflib
Package
Name
giflib
Purl
pkg:apk/alpine/giflib?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
5.2.2-r0
Affected versions
4.*
4.1.6-r0
4.1.6-r1
4.1.6-r2
4.1.6-r3
4.1.6-r4
4.1.6-r5
4.1.6-r6
4.1.6-r7
4.2.1-r0
5.*
5.0.4-r0
5.0.5-r0
5.0.6-r0
5.1.0-r0
5.1.1-r0
5.1.2-r0
5.1.4-r0
5.1.4-r1
5.1.4-r2
5.1.9-r0
5.2.1-r0
5.2.1-r1
5.2.1-r2
5.2.1-r3
5.2.1-r4
5.2.1-r5
Alpine:v3.20
giflib
Package
Name
giflib
Purl
pkg:apk/alpine/giflib?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
5.2.2-r0
Affected versions
4.*
4.1.6-r0
4.1.6-r1
4.1.6-r2
4.1.6-r3
4.1.6-r4
4.1.6-r5
4.1.6-r6
4.1.6-r7
4.2.1-r0
5.*
5.0.4-r0
5.0.5-r0
5.0.6-r0
5.1.0-r0
5.1.1-r0
5.1.2-r0
5.1.4-r0
5.1.4-r1
5.1.4-r2
5.1.9-r0
5.2.1-r0
5.2.1-r1
5.2.1-r2
5.2.1-r3
5.2.1-r4
5.2.1-r5
Alpine:v3.21
giflib
Package
Name
giflib
Purl
pkg:apk/alpine/giflib?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
5.2.2-r0
Affected versions
4.*
4.1.6-r0
4.1.6-r1
4.1.6-r2
4.1.6-r3
4.1.6-r4
4.1.6-r5
4.1.6-r6
4.1.6-r7
4.2.1-r0
5.*
5.0.4-r0
5.0.5-r0
5.0.6-r0
5.1.0-r0
5.1.1-r0
5.1.2-r0
5.1.4-r0
5.1.4-r1
5.1.4-r2
5.1.9-r0
5.2.1-r0
5.2.1-r1
5.2.1-r2
5.2.1-r3
5.2.1-r4
5.2.1-r5
Alpine:v3.22
giflib
Package
Name
giflib
Purl
pkg:apk/alpine/giflib?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
5.2.2-r0
Affected versions
4.*
4.1.6-r0
4.1.6-r1
4.1.6-r2
4.1.6-r3
4.1.6-r4
4.1.6-r5
4.1.6-r6
4.1.6-r7
4.2.1-r0
5.*
5.0.4-r0
5.0.5-r0
5.0.6-r0
5.1.0-r0
5.1.1-r0
5.1.2-r0
5.1.4-r0
5.1.4-r1
5.1.4-r2
5.1.9-r0
5.2.1-r0
5.2.1-r1
5.2.1-r2
5.2.1-r3
5.2.1-r4
5.2.1-r5
CVE-2023-39742 - OSV