Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Little CMS (lcms2) before 2.5, as used in OpenJDK 7 and possibly other products, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via vectors related to (1) cmsStageAllocLabV2ToV4curves, (2) cmsPipelineDup, (3) cmsAllocProfileSequenceDescription, (4) CurvesAlloc, and (5) cmsnamed.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Little CMS 多个空指针逆向引用拒绝服务漏洞
Vulnerability Description
Little CMS(又名lcms或liblcms)是软件开发者Marti Maria所研发的一套开源的色彩管理系统。该系统提供黑点补偿、多种像素格式处理、配置文件编辑等功能。 OpenJDK 7版本中使用的Little CMS 2.4及之前版本中存在安全漏洞。远程攻击者可借助cmsStageAllocLabV2ToV4curves、cmsPipelineDup、cmsAllocProfileSequenceDescription、CurvesAlloc或cmsnamed文件利用该漏洞造成拒绝服务(空指针
CVSS Information
N/A
Vulnerability Type
N/A