CVE-2010-4694 describes a buffer overflow vulnerability in gif2png versions 2.5.3 and earlier, specifically within the gif2png.c component. This flaw can be triggered by processing GIF files containing numerous images, leading to overly long extensions for PNG output files. With a CVSS score of 6.8, this vulnerability is considered medium severity, allowing unauthenticated attackers to cause a denial of service (application crash) or potentially achieve other unspecified impacts via network-based attacks with medium complexity. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.5.3CPE matchmatch criteria | cpe:2.3:a:catb:gif2png:*:*:*:*:*:*:*:* | ||
0.99CPE matchmatch criteria | cpe:2.3:a:catb:gif2png:0.99:*:*:*:*:*:*:* | ||
1.0.0CPE matchmatch criteria | cpe:2.3:a:catb:gif2png:1.0.0:*:*:*:*:*:*:* | ||
1.1.0CPE matchmatch criteria | cpe:2.3:a:catb:gif2png:1.1.0:*:*:*:*:*:*:* | ||
1.1.1CPE matchmatch criteria | cpe:2.3:a:catb:gif2png:1.1.1:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.