Libungif is a legacy GIF image-parsing library with a narrow product scope that persists in older systems and embedded applications. The library's disclosed vulnerabilities center on image-format parsing and decoding logic, reflecting the complexity inherent to file-format handlers that process untrusted input. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Libungif over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2005-3350HIGH libungif library before 4.1.0 allows attackers to corrupt memory and possibly execute arbitrary code via a crafted GIF file that leads to an out-of-bounds write. | Nov 4, 2005 | 7.5 | 21 | NO | NO |
libungif library before 4.1.0 allows attackers to cause a denial of service via a crafted GIF file that triggers a null dereference. | Nov 4, 2005 | 2.6 | 13 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Libungif.
Media articles that mention a CVE ID that affects a product developed by Libungif — matched by CVE ID, not by vendor name.