decoding.c in android-gif-drawable before 1.2.24 does not limit the maximum length of a comment, leading to denial of service.
References
Link | Resource |
---|---|
https://github.com/koral--/android-gif-drawable/commit/9f0f0c89e6fa38548163771feeb4bde84b828887 | Patch Third Party Advisory |
https://github.com/koral--/android-gif-drawable/compare/v1.2.23...v1.2.24 | Patch Release Notes Third Party Advisory |
Configurations
History
25 Jan 2022, 19:36
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-noinfo | |
CVSS |
v2 : v3 : |
v2 : 5.0
v3 : 7.5 |
CPE | cpe:2.3:a:android-gif-drawable_project:android-gif-drawable:*:*:*:*:*:*:*:* | |
References | (MISC) https://github.com/koral--/android-gif-drawable/compare/v1.2.23...v1.2.24 - Patch, Release Notes, Third Party Advisory | |
References | (MISC) https://github.com/koral--/android-gif-drawable/commit/9f0f0c89e6fa38548163771feeb4bde84b828887 - Patch, Third Party Advisory |
19 Jan 2022, 01:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-01-19 01:15
Updated : 2024-02-04 22:08
NVD link : CVE-2022-23435
Mitre link : CVE-2022-23435
CVE.ORG link : CVE-2022-23435
JSON object : View
Products Affected
android-gif-drawable_project
- android-gif-drawable
CWE