VYPR

Maven package

pl.droidsonroids.gif/android-gif-drawable

pkg:maven/pl.droidsonroids.gif/android-gif-drawable

Vulnerabilities (2)

  • CVE-2022-23435Jan 19, 2022
    affected < 1.2.24fixed 1.2.24

    decoding.c in android-gif-drawable before 1.2.24 does not limit the maximum length of a comment, leading to denial of service.

  • CVE-2019-11932Oct 3, 2019
    affected < 1.2.18fixed 1.2.18

    A double free vulnerability in the DDGifSlurp function in decoding.c in the android-gif-drawable library before version 1.2.18, as used in WhatsApp for Android before version 2.19.244 and many other Android applications, allows remote attackers to execute arbitrary code or cause