CVE-2026-26740

Buffer Overflow vulnerability in giflib v.5.2.2 allows a remote attacker to cause a denial of service via the EGifGCBToExtension overwriting an existing Graphic Control Extension block without validating its allocated size.
Configurations

Configuration 1 (hide)

cpe:2.3:a:giflib_project:giflib:5.2.2:*:*:*:*:*:*:*

History

21 Mar 2026, 00:09

Type Values Removed Values Added
CPE cpe:2.3:a:giflib_project:giflib:5.2.2:*:*:*:*:*:*:*
References () https://github.com/zakkanijia/POC/blob/main/giflib/giftool/giflib_giftool_gce_len_heap_oobwrite_disclosure.md - () https://github.com/zakkanijia/POC/blob/main/giflib/giftool/giflib_giftool_gce_len_heap_oobwrite_disclosure.md - Exploit, Third Party Advisory
First Time Giflib Project
Giflib Project giflib

18 Mar 2026, 19:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-18 18:16

Updated : 2026-03-21 00:09


NVD link : CVE-2026-26740

Mitre link : CVE-2026-26740

CVE.ORG link : CVE-2026-26740


JSON object : View

Products Affected

giflib_project

  • giflib
CWE
CWE-787

Out-of-bounds Write