There is an invalid memory access bug in cgif.c that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead to a denial of service or possibly unspecified other impact.
[
{
"source": "https://github.com/pts/sam2p/commit/1d62cf8964bfcafa6561c4c3bb66d4aa4c529a73",
"target": {
"file": "cgif.c"
},
"signature_version": "v1",
"deprecated": false,
"id": "CVE-2020-19491-2c537f53",
"digest": {
"line_hashes": [
"26584005264558608497469863337678664354",
"277268880482349854981547270748005376378",
"187408893928214441657464376692005425479",
"115241181371941928282202310218825599045"
],
"threshold": 0.9
},
"signature_type": "Line"
},
{
"source": "https://github.com/pts/sam2p/commit/1d62cf8964bfcafa6561c4c3bb66d4aa4c529a73",
"target": {
"function": "DGifOpenFileName",
"file": "cgif.c"
},
"signature_version": "v1",
"deprecated": false,
"id": "CVE-2020-19491-6045c24c",
"digest": {
"function_hash": "62284236809577344850796114599691681433",
"length": 16558.0
},
"signature_type": "Function"
}
]