Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-10165

Опубликовано: 03 фев. 2017
Источник: ubuntu
Приоритет: low
CVSS2: 5.8
CVSS3: 7.1

Описание

The Type_MLU_Read function in cmstypes.c in Little CMS (aka lcms2) allows remote attackers to obtain sensitive information or cause a denial of service via an image with a crafted ICC profile, which triggers an out-of-bounds heap read.

РелизСтатусПримечание
artful

ignored

end of life
bionic

released

2.8-4
devel

released

2.8-4
esm-infra-legacy/trusty

released

2.5-0ubuntu4.2
esm-infra/bionic

released

2.8-4
esm-infra/xenial

released

2.6-3ubuntu2.1
precise

ignored

end of life
precise/esm

not-affected

2.2+git20110628-2ubuntu3.3
trusty

released

2.5-0ubuntu4.2
trusty/esm

released

2.5-0ubuntu4.2

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [7u121-2.6.8-1ubuntu0.14.04.1]]
precise

released

7u121-2.6.8-1ubuntu0.12.04.1
precise/esm

DNE

precise was released [7u121-2.6.8-1ubuntu0.12.04.1]
trusty

released

7u121-2.6.8-1ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [7u121-2.6.8-1ubuntu0.14.04.1]
upstream

needs-triage

vivid/stable-phone-overlay

DNE

Показывать по

РелизСтатусПримечание
artful

not-affected

uses system lcms
bionic

not-affected

uses system lcms
devel

not-affected

uses system lcms
esm-apps/bionic

not-affected

uses system lcms
esm-infra-legacy/trusty

DNE

esm-infra/xenial

not-affected

uses system lcms
precise/esm

DNE

trusty

DNE

trusty/esm

DNE

upstream

needs-triage

Показывать по

5.8 Medium

CVSS2

7.1 High

CVSS3

Связанные уязвимости

CVSS3: 7.1
redhat
больше 9 лет назад

The Type_MLU_Read function in cmstypes.c in Little CMS (aka lcms2) allows remote attackers to obtain sensitive information or cause a denial of service via an image with a crafted ICC profile, which triggers an out-of-bounds heap read.

CVSS3: 7.1
nvd
около 9 лет назад

The Type_MLU_Read function in cmstypes.c in Little CMS (aka lcms2) allows remote attackers to obtain sensitive information or cause a denial of service via an image with a crafted ICC profile, which triggers an out-of-bounds heap read.

CVSS3: 7.1
debian
около 9 лет назад

The Type_MLU_Read function in cmstypes.c in Little CMS (aka lcms2) all ...

CVSS3: 7.1
github
больше 3 лет назад

The Type_MLU_Read function in cmstypes.c in Little CMS (aka lcms2) allows remote attackers to obtain sensitive information or cause a denial of service via an image with a crafted ICC profile, which triggers an out-of-bounds heap read.

suse-cvrf
больше 7 лет назад

Security update for lcms2

5.8 Medium

CVSS2

7.1 High

CVSS3