Multiple stack-based buffer overflows in the ReadSetOfCurves function in LittleCMS (aka lcms or liblcms) before 1.18beta2, as used in Firefox 3.1beta, OpenJDK, and GIMP, allow context-dependent attackers to execute arbitrary code via a crafted image file associated with a large integer value for the (1) input or (2) output channel, related to the ReadLUT_A2B and ReadLUT_B2A functions.
CVSS Details
- CVSS 3.1 Base Score: 7.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade java-1.6.0-openjdk-develUpgrade java-1.6.0-openjdk-srcUpgrade java-1.6.0-openjdkUpgrade java-1.6.0-openjdk-demoUpgrade java-1.6.0-openjdk-javadoc | Dec 1, 2016 | Mar 23, 2009 |
| Gentoo Linux | — | Upgrade media-libs/lcms. | Oct 30, 2017 | Mar 23, 2009 |
| Oracle_linux | — | Upgrade python-lcmsUpgrade lcms-develUpgrade lcms | Oct 16, 2024 | Mar 23, 2009 |
| Suse | — | Upgrade liblcms1-32bitUpgrade python-lcmsUpgrade liblcms-devel-32bitUpgrade liblcms1-x86Upgrade lcmsUpgrade liblcms-develUpgrade liblcms1 | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade liblcms1Upgrade python-liblcms | Nov 8, 2024 | Mar 23, 2009 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub