CVE-2013-4160

Little CMS (lcms2) before 2.5, as used in OpenJDK 7 and possibly other products, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via vectors related to (1) cmsStageAllocLabV2ToV4curves, (2) cmsPipelineDup, (3) cmsAllocProfileSequenceDescription, (4) CurvesAlloc, and (5) cmsnamed.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:littlecms:little_cms_color_engine:*:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:1.07:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:1.08:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:1.09:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:1.10:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:1.11:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:1.12:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:1.13:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:1.14:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:1.15:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:1.16:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:1.17:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:1.18:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:1.19:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:2.0:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:2.1:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:2.2:*:*:*:*:*:*:*
cpe:2.3:a:littlecms:little_cms_color_engine:2.3:*:*:*:*:*:*:*

History

21 Nov 2024, 01:54

Type Values Removed Values Added
References () http://mail.openjdk.java.net/pipermail/distro-pkg-dev/2013-July/023895.html - () http://mail.openjdk.java.net/pipermail/distro-pkg-dev/2013-July/023895.html -
References () http://openwall.com/lists/oss-security/2013/07/18/7 - () http://openwall.com/lists/oss-security/2013/07/18/7 -
References () http://openwall.com/lists/oss-security/2013/07/22/1 - () http://openwall.com/lists/oss-security/2013/07/22/1 -
References () http://www.ubuntu.com/usn/USN-1911-1 - () http://www.ubuntu.com/usn/USN-1911-1 -
References () https://bugzilla.novell.com/show_bug.cgi?id=826097#c9 - () https://bugzilla.novell.com/show_bug.cgi?id=826097#c9 -
References () https://github.com/mm2/Little-CMS/commit/91c2db7f2559be504211b283bc3a2c631d6f06d9 - () https://github.com/mm2/Little-CMS/commit/91c2db7f2559be504211b283bc3a2c631d6f06d9 -

Information

Published : 2014-01-21 18:55

Updated : 2024-11-21 01:54


NVD link : CVE-2013-4160

Mitre link : CVE-2013-4160

CVE.ORG link : CVE-2013-4160


JSON object : View

Products Affected

littlecms

  • little_cms_color_engine