Skip to main content

Vendor/product archive

littlecms / little_cms_color_engine CVEs

Beta · best-effort

7 CVEs tagged to littlecms / little_cms_color_engine3 Critical, 1 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2013-7455

Published May 7, 2016

Double free vulnerability in the DefaultICCintents function in cmscnvrt.c in liblcms2 in Little CMS 2.x before 2.6 allows remote attackers to execute arbitrary code via a malforme…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-4160

Published Jan 21, 2014

Little CMS (lcms2) before 2.5, as used in OpenJDK 7 and possibly other products, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via vect…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-4276

Published Sep 28, 2013

Multiple stack-based buffer overflows in LittleCMS (aka lcms or liblcms) 1.19 and earlier allow remote attackers to cause a denial of service (crash) via a crafted (1) ICC color p…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-7 of 7 CVEsPage 1 of 1