Libgig0 maintains a focused, single-product library whose exposure centers on memory-safety and access-control weaknesses such as out-of-bounds reads, out-of-bounds writes, and NULL pointer dereferences. The compact vulnerability footprint reflects the vendor's narrow scope, though the library's role in other software stacks may amplify downstream impact. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Libgig0 over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-12953MEDIUM The gig::Instrument::UpdateRegionKeyTable function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denial of service (invalid memory write and application crash) via | Aug 28, 2017 | 6.5 | 32 | NO | YES |
CVE-2017-12952MEDIUM The LoadString function in helper.h in libgig 4.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted gig file. | Aug 28, 2017 | 6.5 | 32 | NO | YES |
CVE-2017-12954MEDIUM The gig::Region::GetSampleFromWavePool function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a cr | Aug 28, 2017 | 6.5 | 27 | NO | YES |
CVE-2017-12951MEDIUM The gig::DimensionRegion::CreateVelocityTable function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denial of service (stack-based buffer over-read and application | Aug 28, 2017 | 6.5 | 26 | NO | YES |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Libgig0.
Media articles that mention a CVE ID that affects a product developed by Libgig0 — matched by CVE ID, not by vendor name.