CVEs (6)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Little CMS (lcms2) through 2.18 has an integer overflow in CubeSize in cmslut.c because the overflow check is performed after the multiplication. |
tificc in Little CMS 2.9 has an out-of-bounds write in the cmsPipelineCheckAndRetreiveStages function in cmslut.c in liblcms2.a via a crafted TIFF file. NOTE: Little CMS developers do consider this a vulnerability becaus...Show more |
tificc in Little CMS 2.9 has an out-of-bounds write in the PrecalculatedXFORM function in cmsxform.c in liblcms2.a via a crafted TIFF file. NOTE: Little CMS developers do consider this a vulnerability because the issue i...Show more |
4Gimp LittlecmsMozilla+1 more4Firefox GimpLittle Cms+1 moreApr 23, 2026 Mar 23, 2009 N/A· v4 N/A· v3 9.3 HIGH· v2 Multiple stack-based buffer overflows in the ReadSetOfCurves function in LittleCMS (aka lcms or liblcms) before 1.18beta2, as used in Firefox 3.1beta, OpenJDK, and GIMP, allow context-dependent attackers to execute arbit...Show more |
4Gimp LittlecmsMozilla+1 more4Firefox GimpLittle Cms+1 moreApr 23, 2026 Mar 23, 2009 N/A· v4 N/A· v3 9.3 HIGH· v2 Multiple integer overflows in LittleCMS (aka lcms or liblcms) before 1.18beta2, as used in Firefox 3.1beta, OpenJDK, and GIMP, allow context-dependent attackers to execute arbitrary code via a crafted image file that tri...Show more |
4Gimp LittlecmsMozilla+1 more4Firefox GimpLittle Cms+1 moreApr 23, 2026 Mar 23, 2009 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Memory leak in LittleCMS (aka lcms or liblcms) before 1.18beta2, as used in Firefox 3.1beta, OpenJDK, and GIMP, allows context-dependent attackers to cause a denial of service (memory consumption and application crash) v...Show more |