296,746
Total vulnerabilities in the database
Double free vulnerability in the DefaultICCintents function in cmscnvrt.c in liblcms2 in Little CMS 2.x before 2.6 allows remote attackers to execute arbitrary code via a malformed ICC profile that triggers an error in the default intent handler.
| Software | From | Fixed in | 
|---|---|---|
| littlecms / little_cms_color_engine | 2.2 | 2.2.x | 
| littlecms / little_cms_color_engine | 2.0 | 2.0.x | 
| littlecms / little_cms_color_engine | 2.1 | 2.1.x | 
| littlecms / little_cms_color_engine | 2.4 | 2.4.x | 
| littlecms / little_cms_color_engine | 2.5 | 2.5.x | 
| littlecms / little_cms_color_engine | 2.3 | 2.3.x |