File _patchinfo of Package patchinfo.33803

<patchinfo incident="33803">
  <issue tracker="cve" id="2021-40633"/>
  <issue tracker="cve" id="2018-11490"/>
  <issue tracker="bnc" id="1094832">VUL-0: CVE-2018-11490: giflib: The DGifDecompressLine function in dgif_lib.c has a heap-based buffer overflow because "Private-&gt;RunningCode - 2" array index is unchecked</issue>
  <issue tracker="bnc" id="1200551">VUL-1: CVE-2021-40633: giflib: excessive memory consumption may lead to denial of service</issue>
  <packager>fstrba</packager>
  <rating>important</rating>
  <category>security</category>
  <summary>Security update for giflib</summary>
  <description>This update for giflib fixes the following issues:

- CVE-2018-11490: Fixed a heap-based buffer overflow in DGifDecompressLine() (bsc#1094832)
- CVE-2021-40633: Fixed a denial of service from excessive memory (bsc#1200551)
</description>
</patchinfo>
openSUSE Build Service is sponsored by