{"id":"CVE-2023-48161","title":"Buffer Overflow vulnerability in GifLib Project GifLib v.5.2.1 allows a local attacker to obtain sensitive information via the DumpSCreen2RGB function in gif2rgb.c","summary":"Buffer Overflow vulnerability in GifLib Project GifLib v.5.2.1 allows a local attacker to obtain sensitive information via the DumpSCreen2RGB function in gif2rgb.c","severity":"high","cvss":7.1,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H","cwe":["CWE-787"],"vendor":"giflib_project","product":"giflib","affected":["giflib = 5.2.1"],"published":"2023-11-22","updated":"2026-10-08","sourceUpdated":"2026-10-08T22:17:25.460","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2023-48161","references":[{"url":"https://github.com/tacetool/TACE#cve-2023-48161","label":"cve@mitre.org"},{"url":"https://sourceforge.net/p/giflib/bugs/167/","label":"cve@mitre.org"},{"url":"https://github.com/tacetool/TACE#cve-2023-48161","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://sourceforge.net/p/giflib/bugs/167/","label":"af854a3a-2127-422b-91ae-364da2661108"}],"tags":["nvd"],"epss":0.00425,"epssPercentile":0.34805,"ingestedAt":"2026-10-08T23:16:47.352Z","slug":"CVE-2023-48161","body":"## Overview\n\nBuffer Overflow vulnerability in GifLib Project GifLib v.5.2.1 allows a local attacker to obtain sensitive information via the DumpSCreen2RGB function in gif2rgb.c\n\n## Affected\n\n- `giflib = 5.2.1`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":39,"depthScoreParts":{"impact":39.1,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}