Bug 2448747 (CVE-2026-26740) - CVE-2026-26740 giflib: giflib: Denial of Service via buffer overflow in EGifGCBToExtension
Summary: CVE-2026-26740 giflib: giflib: Denial of Service via buffer overflow in EGifG...
Keywords:
Status: NEW
Alias: CVE-2026-26740
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
high
high
Target Milestone: ---
Assignee: Product Security DevOps Team
QA Contact:
URL:
Whiteboard:
Depends On: 2448828 2448829 2448830 2448831 2448832 2448833 2448834 2448835 2448836
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-03-18 19:03 UTC by OSIDB Bzimport
Modified: 2026-03-18 20:46 UTC (History)
6 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2026-03-18 19:03:00 UTC
Buffer Overflow vulnerability in giflib v.5.2.2 allows a remote attacker to cause a denial of service via the EGifGCBToExtension overwriting an existing Graphic Control Extension block without validating its allocated size.


Note You need to log in before you can comment on or make changes to this bug.