Rapid7

vulnerability

Ubuntu: (CVE-2017-6961): apng2gif vulnerability

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
Mar 17, 2017
Added
Nov 19, 2024
Modified
May 25, 2026

Description

An issue was discovered in apng2gif 1.7. There is improper sanitization of user input causing huge memory allocations, resulting in a crash. This is related to the read_chunk function using the pChunk->size value (within the PNG file) to determine the amount of memory to allocate.

Solution

ubuntu-upgrade-apng2gif
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.