Buffer overflow in the ReadEmbeddedTextTag function in src/cmsio1.c in Little cms color engine (aka lcms) before 1.16 allows attackers to have an unknown impact via vectors related to a length parameter inconsistency involving the contents of "the input file," a different vulnerability than CVE-2007-2741.
2008-12-03T17:30:00.510
2025-04-09T00:30:58.490
Deferred
CVSSv2: 10.0 (HIGH)
AV:N/AC:L/Au:N/C:C/I:C/A:C
10.0
10.0
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | littlecms | lcms | ≤ 1.15 | Yes |
| Application | littlecms | lcms | 1.07 | Yes |
| Application | littlecms | lcms | 1.08 | Yes |
| Application | littlecms | lcms | 1.09 | Yes |
| Application | littlecms | lcms | 1.10 | Yes |
| Application | littlecms | lcms | 1.11 | Yes |
| Application | littlecms | lcms | 1.12 | Yes |
| Application | littlecms | lcms | 1.13 | Yes |
| Application | littlecms | lcms | 1.14 | Yes |
| Application | littlecms | little_cms_color_engine | ≤ 1.15 | Yes |
| Application | littlecms | little_cms_color_engine | 1.07 | Yes |
| Application | littlecms | little_cms_color_engine | 1.08 | Yes |
| Application | littlecms | little_cms_color_engine | 1.09 | Yes |
| Application | littlecms | little_cms_color_engine | 1.10 | Yes |
| Application | littlecms | little_cms_color_engine | 1.11 | Yes |
| Application | littlecms | little_cms_color_engine | 1.12 | Yes |
| Application | littlecms | little_cms_color_engine | 1.13 | Yes |
| Application | littlecms | little_cms_color_engine | 1.14 | Yes |