CVE-2009-0793
Published: 9 April 2009
cmsxform.c in LittleCMS (aka lcms or liblcms) 1.18, as used in OpenJDK and other products, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted image that triggers execution of incorrect code for "transformations of monochrome profiles."
Notes
Author | Note |
---|---|
mdeslaur | as per upstream post to lcms-user: No code injection can be done using this bug. Using monochrome profiles is rare, and using them in the output direction is a corner case. This bug is only exploitable if the application uses monochrome output, and then the crafted profile should be in the output direction. Does not affect input profiles, so an attacker could NOT use this flaw by creating a specially-crafted image. |
Priority
Status
Package | Release | Status |
---|---|---|
lcms Launchpad, Ubuntu, Debian |
dapper |
Ignored
(end of life)
|
gutsy |
Ignored
(end of life, was needs-triage)
|
|
hardy |
Released
(1.16-7ubuntu1.3)
|
|
intrepid |
Ignored
(end of life)
|
|
jaunty |
Ignored
(end of life)
|
|
karmic |
Released
(1.18.dfsg-1ubuntu1.1)
|
|
lucid |
Released
(1.18.dfsg-1ubuntu2.10.04.1)
|
|
maverick |
Released
(1.18.dfsg-1ubuntu2.10.10.1)
|
|
upstream |
Needs triage
|
|
Patches: vendor: https://bugzilla.redhat.com/attachment.cgi?id=337279 |
||
openjdk-6 Launchpad, Ubuntu, Debian |
dapper |
Does not exist
|
gutsy |
Does not exist
|
|
hardy |
Released
(6b18-1.8.2-4ubuntu1~8.04.1)
|
|
intrepid |
Ignored
(end of life)
|
|
jaunty |
Ignored
(end of life)
|
|
karmic |
Not vulnerable
(6b16-1.6.1-0ubuntu1)
|
|
lucid |
Not vulnerable
(6b16-1.6.1-0ubuntu1)
|
|
maverick |
Not vulnerable
(6b16-1.6.1-0ubuntu1)
|
|
upstream |
Released
(6b16-1)
|