Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2016-10165

The Type_MLU_Read function in cmstypes.c in Little CMS (aka lcms2) allows remote attackers to obtain sensitive information or cause a denial of service via an image with a crafted ICC profile, which triggers an out-of-bounds heap read.

  • Published: Feb 3, 2017
  • Updated: Apr 13, 2023
  • CVE: CVE-2016-10165
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.1
  • AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H

CVSS v2:

  • Severity: Medium
  • Score: 5.8
  • AV:N/AC:M/Au:N/C:P/I:N/A:P

CWEs:

Software From Fixed in
debian / debian_linux 8.0 8.0.x
opensuse / leap 42.1 42.1.x
canonical / ubuntu_linux 12.04 12.04.x
canonical / ubuntu_linux 14.04 14.04.x
canonical / ubuntu_linux 16.04 16.04.x
canonical / ubuntu_linux 18.04 18.04.x
redhat / enterprise_linux_desktop 7.0 7.0.x
redhat / enterprise_linux_server 5.0 5.0.x
redhat / enterprise_linux_workstation 7.0 7.0.x
redhat / enterprise_linux_server 7.0 7.0.x
redhat / enterprise_linux_workstation 5.0 5.0.x
redhat / enterprise_linux_desktop 6.0 6.0.x
redhat / enterprise_linux_server 6.0 6.0.x
redhat / enterprise_linux_workstation 6.0 6.0.x
redhat / enterprise_linux_server_tus 7.3 7.3.x
redhat / enterprise_linux_desktop 5.0 5.0.x
redhat / enterprise_linux_server_aus 7.3 7.3.x
redhat / enterprise_linux_server_aus 7.4 7.4.x
redhat / enterprise_linux_server_eus 7.3 7.3.x
redhat / enterprise_linux_server_eus 7.4 7.4.x
redhat / enterprise_linux_server_eus 7.5 7.5.x
redhat / satellite 5.8 5.8.x
redhat / enterprise_linux_server_tus 7.6 7.6.x
redhat / enterprise_linux_server_eus 7.6 7.6.x
redhat / enterprise_linux_server_aus 7.6 7.6.x
redhat / enterprise_linux_server_eus 7.7 7.7.x
redhat / enterprise_linux_server_aus 7.7 7.7.x
redhat / enterprise_linux_server_tus 7.7 7.7.x
netapp / active_iq_unified_manager 7.3 7.3.x
netapp / active_iq_unified_manager 9.5 9.5.x
netapp / e-series_santricity_os_controller 11.0 11.0.x
netapp / e-series_santricity_os_controller 11.0.0 11.0.0.x
netapp / e-series_santricity_os_controller 11.20 11.20.x
netapp / e-series_santricity_os_controller 11.25 11.25.x
netapp / e-series_santricity_os_controller 11.30 11.30.x
netapp / e-series_santricity_os_controller 11.30.5r3 11.30.5r3.x
netapp / e-series_santricity_os_controller 11.40 11.40.x
netapp / e-series_santricity_os_controller 11.40.3r2 11.40.3r2.x
netapp / e-series_santricity_os_controller 11.40.5 11.40.5.x
netapp / e-series_santricity_os_controller 11.50.1 11.50.1.x
netapp / e-series_santricity_os_controller 11.50.2 11.50.2.x
netapp / e-series_santricity_os_controller 11.50.2-p1 11.50.2-p1.x
netapp / e-series_santricity_os_controller 11.60 11.60.x
netapp / e-series_santricity_os_controller 11.60.0 11.60.0.x
netapp / e-series_santricity_os_controller 11.60.1 11.60.1.x
netapp / e-series_santricity_os_controller 11.60.3 11.60.3.x
netapp / e-series_santricity_os_controller 11.70.1 11.70.1.x
netapp / e-series_santricity_os_controller 11.70.2 11.70.2.x
netapp / oncommand_unified_manager 7.1 7.1.x
littlecms / little_cms_color_engine - 2.11