Description
ImageSharp is a 2D graphics API. An Out-of-bounds Write vulnerability has been found in the ImageSharp gif decoder, allowing attackers to cause a crash using a specially crafted gif. This can potentially lead to denial of service. All users are advised to upgrade to v3.1.5 or v2.1.9.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-2274 | ImageSharp is a 2D graphics API. An Out-of-bounds Write vulnerability has been found in the ImageSharp gif decoder, allowing attackers to cause a crash using a specially crafted gif. This can potentially lead to denial of service. All users are advised to upgrade to v3.1.5 or v2.1.9. |
Github GHSA |
GHSA-63p8-c4ww-9cg7 | SixLabors ImageSharp Out-of-bounds Write |
References
History
Wed, 11 Sep 2024 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sixlabors
Sixlabors imagesharp |
|
| CPEs | cpe:2.3:a:sixlabors:imagesharp:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Sixlabors
Sixlabors imagesharp |
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-02T04:46:52.374Z
Reserved: 2024-07-15T15:53:28.324Z
Link: CVE-2024-41131
Updated: 2024-08-02T04:46:52.374Z
Status : Modified
Published: 2024-07-22T15:15:03.933
Modified: 2024-11-21T09:32:17.670
Link: CVE-2024-41131
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA