Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-29069

Опубликовано: 01 апр. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 7.3

Описание

A heap buffer overflow vulnerability has been identified in the lcms2-2.16. The vulnerability exists in the UnrollChunkyBytes function in cmspack.c, which is responsible for handling color space transformations. NOTE: this is disputed by the Supplier because the finding identified a bug in a third-party calling program, not in lcms.

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

not-affected

esm-infra-legacy/xenial

not-affected

esm-infra/bionic

not-affected

esm-infra/focal

not-affected

esm-infra/xenial

not-affected

focal

not-affected

jammy

not-affected

noble

not-affected

oracular

not-affected

Показывать по

Ссылки на источники

EPSS

Процентиль: 34%
0.00408
Низкий

7.3 High

CVSS3

Связанные уязвимости

CVSS3: 7.3
nvd
больше 1 года назад

A heap buffer overflow vulnerability has been identified in the lcms2-2.16. The vulnerability exists in the UnrollChunkyBytes function in cmspack.c, which is responsible for handling color space transformations. NOTE: this is disputed by the Supplier because the finding identified a bug in a third-party calling program, not in lcms.

CVSS3: 7.3
debian
больше 1 года назад

A heap buffer overflow vulnerability has been identified in the lcms2- ...

CVSS3: 7.3
github
больше 1 года назад

A heap buffer overflow vulnerability has been identified in the lcms2-2.16. The vulnerability exists in the UnrollChunkyBytes function in cmspack.c, which is responsible for handling color space transformations.

EPSS

Процентиль: 34%
0.00408
Низкий

7.3 High

CVSS3