oss-sec mailing list archives

Re: CVE request: lcms 1.x buffer overflows


From: Raphael Geissert <geissert () debian org>
Date: Mon, 5 Aug 2013 14:49:22 +0200

On 5 August 2013 07:25, Thijs Kinkhorst <thijs () debian org> wrote:
Buffer overflows have been reported in Little CMS 1.x:
http://bugs.debian.org/718682

Just a quick note: one of the affected parts of the code is a sample
and the other is the tiffdiff(1) tool, where the buffer overflow is
triggered by the file names passed as arguments.

Cheers,
-- 
Raphael Geissert - Debian Developer
www.debian.org - get.debian.net


Current thread: