CVE-2007-2741
published 2007-05-17CVE-2007-2741: Stack-based buffer overflow in Little CMS (lcms) before 1.15 allows remote attackers to execute arbitrary code or cause a denial of service (application crash)…
PriorityP340critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
7.93%
94.1th percentile
Stack-based buffer overflow in Little CMS (lcms) before 1.15 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted ICC profile in a JPG file.
Affected
19 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| littlecms | lcms | <= 1.14 | — |
| littlecms | lcms | <= 1.15 | — |
| littlecms | lcms | — | — |
| littlecms | lcms | — | — |
| littlecms | lcms | — | — |
| littlecms | lcms | — | — |
| littlecms | lcms | — | — |
| littlecms | lcms | — | — |
| littlecms | lcms | — | — |
| littlecms | lcms | — | — |
| littlecms | little_cms_color_engine | <= 1.15 | — |
| littlecms | little_cms_color_engine | — | — |
| littlecms | little_cms_color_engine | — | — |
| littlecms | little_cms_color_engine | — | — |
| littlecms | little_cms_color_engine | — | — |
| littlecms | little_cms_color_engine | — | — |
| littlecms | little_cms_color_engine | — | — |
| littlecms | little_cms_color_engine | — | — |
| littlecms | little_cms_color_engine | — | — |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
vendor_redhat9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
LittleCMS vulnerability
vendor_ubuntu·2008-10-14
CVE-2007-2741 LittleCMS vulnerability
Title: LittleCMS vulnerability
Summary: LittleCMS vulnerability
Chris Evans discovered that certain ICC operations in lcms were not
correctly bounds-checked. If a user or automated system were tricked
into processing an image with malicious ICC tags, a remote attacker could
crash applications linked against liblcms1, leading to a denial of service,
or possibly execute arbitrary code with user privileges.
Instructions: In general, a standard system upgrade is sufficient to effect the
necessary changes.
Red Hat
lcms: insufficient input validation in ReadEmbeddedTextTag
vendor_redhat·2007-11-22·CVSS 9.3
CVE-2008-5316 [CRITICAL] CWE-20 lcms: insufficient input validation in ReadEmbeddedTextTag
lcms: insufficient input validation in ReadEmbeddedTextTag
Buffer overflow in the ReadEmbeddedTextTag function in src/cmsio1.c in Little cms color engine (aka lcms) before 1.16 allows attackers to have an unknown impact via vectors related to a length parameter inconsistency involving the contents of "the input file," a different vulnerability than CVE-2007-2741.
Red Hat
CVE-2007-2741: Stack-based buffer overflow in Little CMS (lcms) before 1
vendor_redhat·CVSS 9.3
CVE-2007-2741 [CRITICAL] CVE-2007-2741: Stack-based buffer overflow in Little CMS (lcms) before 1
Stack-based buffer overflow in Little CMS (lcms) before 1.15 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted ICC profile in a JPG file.
Statement: Not vulnerable. This issue did not affect the versions of lcms as shipped with Red Hat Enterprise Linux 5.
GHSA
GHSA-hwr4-gr5c-2vfm: Buffer overflow in the ReadEmbeddedTextTag function in src/cmsio1
ghsa_unreviewed·2022-05-17·CVSS 9.3
CVE-2008-5316 [CRITICAL] CWE-119 GHSA-hwr4-gr5c-2vfm: Buffer overflow in the ReadEmbeddedTextTag function in src/cmsio1
Buffer overflow in the ReadEmbeddedTextTag function in src/cmsio1.c in Little cms color engine (aka lcms) before 1.16 allows attackers to have an unknown impact via vectors related to a length parameter inconsistency involving the contents of "the input file," a different vulnerability than CVE-2007-2741.
GHSA
GHSA-ccc3-2rqr-qrvv: Stack-based buffer overflow in Little CMS (lcms) before 1
ghsa_unreviewed·2022-05-01
CVE-2007-2741 [HIGH] CWE-119 GHSA-ccc3-2rqr-qrvv: Stack-based buffer overflow in Little CMS (lcms) before 1
Stack-based buffer overflow in Little CMS (lcms) before 1.15 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted ICC profile in a JPG file.
No detection rules found.
No public exploits indexed.
http://osvdb.org/36179http://scary.beasts.org/security/CESA-2007-001.htmlhttp://secunia.com/advisories/25294http://secunia.com/advisories/27756http://secunia.com/advisories/32282http://www.mandriva.com/security/advisories?name=MDKSA-2007:238http://www.novell.com/linux/security/advisories/2007_24_sr.htmlhttp://www.securityfocus.com/bid/24001http://www.ubuntu.com/usn/usn-652-1http://www.vupen.com/english/advisories/2007/1837https://exchange.xforce.ibmcloud.com/vulnerabilities/34331http://osvdb.org/36179http://scary.beasts.org/security/CESA-2007-001.htmlhttp://secunia.com/advisories/25294http://secunia.com/advisories/27756http://secunia.com/advisories/32282http://www.mandriva.com/security/advisories?name=MDKSA-2007:238http://www.novell.com/linux/security/advisories/2007_24_sr.htmlhttp://www.securityfocus.com/bid/24001http://www.ubuntu.com/usn/usn-652-1http://www.vupen.com/english/advisories/2007/1837https://exchange.xforce.ibmcloud.com/vulnerabilities/34331
2007-05-17
Published