Oval Definition:oval:org.mitre.oval:def:22595
Revision Date:2014-05-26Version:24
Title:ELSA-2009:0339: lcms security update (Moderate)
Description:Multiple stack-based buffer overflows in the ReadSetOfCurves function in LittleCMS (aka lcms or liblcms) before 1.18beta2, as used in Firefox 3.1beta, OpenJDK, and GIMP, allow context-dependent attackers to execute arbitrary code via a crafted image file associated with a large integer value for the (1) input or (2) output channel, related to the ReadLUT_A2B and ReadLUT_B2A functions.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2009-0581
CVE-2009-0723
CVE-2009-0733
ELSA-2009:0339-01
Platform(s):Oracle Linux 5
Product(s):lcms
Definition Synopsis
  • Oracle Linux 5.x
  • AND rpm test
  • lcms is earlier than 0:1.18-0.1.beta1.el5_3.2
  • OR lcms-devel is earlier than 0:1.18-0.1.beta1.el5_3.2
  • OR python-lcms is earlier than 0:1.18-0.1.beta1.el5_3.2
  • BACK