Описание
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to version 2.3.1.2, iccDEV is vulnerable to heap buffer overflow in the ToneMap parser. This issue has been patched in version 2.3.1.2.
Ссылки
- Product
- Patch
- Patch
- ExploitIssue Tracking
- Issue Tracking
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.3.1.2 (исключая)
cpe:2.3:a:color:iccdev:*:*:*:*:*:*:*:*
EPSS
Процентиль: 1%
0.00012
Низкий
6.6 Medium
CVSS3
7.8 High
CVSS3
Дефекты
CWE-122
CWE-787
EPSS
Процентиль: 1%
0.00012
Низкий
6.6 Medium
CVSS3
7.8 High
CVSS3
Дефекты
CWE-122
CWE-787