Total vulnerabilities in the database
Integer signedness error in the cmsAllocGamma function in src/cmsgamma.c in Little cms color engine (aka lcms) before 1.17 allows attackers to have an unknown impact via a file containing a certain "number of entries" value, which is interpreted improperly, leading to an allocation of insufficient memory.
Software | From | Fixed in |
---|---|---|
littlecms / little_cms_color_engine | 1.15 | 1.15.x |
littlecms / lcms | - | 1.16.x |
littlecms / lcms | 1.08 | 1.08.x |
littlecms / little_cms_color_engine | 1.12 | 1.12.x |
littlecms / lcms | 1.14 | 1.14.x |
littlecms / little_cms_color_engine | 1.13 | 1.13.x |
littlecms / lcms | 1.15 | 1.15.x |
littlecms / little_cms_color_engine | 1.11 | 1.11.x |
littlecms / little_cms_color_engine | 1.08 | 1.08.x |
littlecms / lcms | 1.07 | 1.07.x |
littlecms / little_cms_color_engine | 1.10 | 1.10.x |
littlecms / lcms | 1.13 | 1.13.x |
littlecms / little_cms_color_engine | 1.09 | 1.09.x |
littlecms / lcms | 1.12 | 1.12.x |
littlecms / lcms | 1.11 | 1.11.x |
littlecms / little_cms_color_engine | - | 1.16.x |
littlecms / little_cms_color_engine | 1.07 | 1.07.x |
littlecms / lcms | 1.10 | 1.10.x |
littlecms / lcms | 1.09 | 1.09.x |
littlecms / little_cms_color_engine | 1.14 | 1.14.x |