High severity7.1NVD Advisory· Published Apr 21, 2021· Updated Jun 17, 2026
CVE-2020-23922
CVE-2020-23922
Description
An issue was discovered in giflib through 5.1.4. DumpScreen2RGB in gif2rgb.c has a heap-based buffer over-read.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- giflib/giflibdescription
<=5.1.4+ 1 more
- (no CPE)range: <=5.1.4
- cpe:2.3:a:giflib_project:giflib:*:*:*:*:*:*:*:*range: <=5.1.4
- cpe:2.3:a:apache:bookkeeper:4.12.1:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
4- sourceforge.net/p/giflib/bugs/151/nvdExploitThird Party Advisory
- cwe.mitre.org/data/definitions/126.htmlnvdTechnical DescriptionThird Party Advisory
- lists.apache.org/thread.html/r58af02e294bd07f487e2c64ffc0a29b837db5600e33b6e698b9d696b%40%3Cissues.bookkeeper.apache.org%3Envd
- lists.apache.org/thread.html/rf4c02775860db415b4955778a131c2795223f61cb8c6a450893651e4%40%3Cissues.bookkeeper.apache.org%3Envd
News mentions
0No linked articles in our index yet.