Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-79662.json
JSON Data
https://api.osv.dev/v1/vulns/AZL-79662
Upstream
  • CVE-2026-23868
Published
2026-03-10T20:16:25Z
Modified
2026-08-31T05:26:27Z
Summary
CVE-2026-23868 affecting package giflib for versions less than 5.2.1-11
Details

Giflib contains a double-free vulnerability that is the result of a shallow copy in GifMakeSavedImage and incorrect error handling. The conditions needed to trigger this vulnerability are difficult but may be possible.

References

Affected packages

Azure Linux:3 / giflib

Package

Name
giflib
Purl
pkg:rpm/azure-linux/giflib

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.2.1-11

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-79662.json"