The iwgifreadimage function in imagew-gif.c in libimageworsener.a in ImageWorsener 1.3.0 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted file.
[
{
"signature_version": "v1",
"source": "https://github.com/jsummers/imageworsener/commit/ca3356eb49fee03e2eaf6b6aff826988c1122d93",
"deprecated": false,
"digest": {
"length": 1725.0,
"function_hash": "302851320383472191590232637873704531140"
},
"signature_type": "Function",
"id": "CVE-2017-7962-86e775ca",
"target": {
"function": "iwgif_read_image",
"file": "src/imagew-gif.c"
}
},
{
"signature_version": "v1",
"source": "https://github.com/jsummers/imageworsener/commit/ca3356eb49fee03e2eaf6b6aff826988c1122d93",
"deprecated": false,
"digest": {
"line_hashes": [
"128062224009350537018407221712288824803",
"295319742635030786793730408592017202503",
"206599785878202985957069950396693650379",
"246862335577992734676135847314490833824"
],
"threshold": 0.9
},
"signature_type": "Line",
"id": "CVE-2017-7962-ba00a213",
"target": {
"file": "src/imagew-gif.c"
}
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-7962.json"