Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The lut_inverse_interp16 function in the QCMS library in Mozilla Firefox before 41.0 allows remote attackers to obtain sensitive information or cause a denial of service (buffer over-read and application crash) via crafted attributes in the ICC 4 profile of an image.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mozilla Firefox QCMS库缓冲区溢出漏洞
Vulnerability Description
Mozilla Firefox是美国Mozilla基金会开发的一款开源Web浏览器。 Mozilla Firefox 40.0.3及之前版本的QCMS库中的‘lut_inverse_interp16’函数存在安全漏洞。远程攻击者可借助图像的ICC 4配置文件中特制的属性利用该漏洞获取敏感信息,或造成拒绝服务(缓冲区溢出读取和应用程序崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A