Use-after-free vulnerability in icclib before 2.13, as used by Argyll CMS before 1.4 and possibly other programs, allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted ICC profile file.
Weaknesses in this category are related to improper management of system resources.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/75162 | vdb entry |
http://secunia.com/advisories/48921 | third party advisory vendor advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=809697 | |
http://www.osvdb.org/81617 | vdb entry |
http://www.argyllcms.com/icc_readme.html | |
http://www.securityfocus.com/bid/53240 | vdb entry |
http://security.gentoo.org/glsa/glsa-201206-04.xml | vendor advisory |
http://lists.fedoraproject.org/pipermail/package-announce/2012-May/079762.html | vendor advisory |
http://secunia.com/advisories/49602 | third party advisory vendor advisory |