Vulnerabilities > CVE-2020-24221 - Infinite Loop vulnerability in Miniupnp Project Ngiflib 0.4

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
local
low complexity
miniupnp-project
CWE-835

Summary

An issue was discovered in GetByte function in miniupnp ngiflib version 0.4, allows local attackers to cause a denial of service (DoS) via crafted .gif file (infinite loop).

Vulnerable Configurations

Part Description Count
Application
Miniupnp_Project
1