The GIF loader in imlib2 before 1.4.9 allows remote attackers to cause a denial of service (application crash) or obtain sensitive information via a crafted image, which triggers an out-of-bounds read.
- https://sourceforge.net/p/enlightenment/mailman/message/35055012/
- https://github.com/mrash/afl-cve