Little CMS Buffer Overflow and Integer Signedness Vulnerabilities
BID:32708
Info
Little CMS Buffer Overflow and Integer Signedness Vulnerabilities
| Bugtraq ID: | 32708 |
| Class: | Unknown |
| CVE: |
CVE-2008-5316 CVE-2008-5317 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 28 2008 12:00AM |
| Updated: | Mar 05 2009 10:56PM |
| Credit: | The vendor |
| Vulnerable: |
Ubuntu Ubuntu Linux 8.10 sparc Ubuntu Ubuntu Linux 8.10 powerpc Ubuntu Ubuntu Linux 8.10 lpia Ubuntu Ubuntu Linux 8.10 i386 Ubuntu Ubuntu Linux 8.10 amd64 Ubuntu Ubuntu Linux 8.04 LTS sparc Ubuntu Ubuntu Linux 8.04 LTS powerpc Ubuntu Ubuntu Linux 8.04 LTS lpia Ubuntu Ubuntu Linux 8.04 LTS i386 Ubuntu Ubuntu Linux 8.04 LTS amd64 Ubuntu Ubuntu Linux 7.10 sparc Ubuntu Ubuntu Linux 7.10 powerpc Ubuntu Ubuntu Linux 7.10 lpia Ubuntu Ubuntu Linux 7.10 i386 Ubuntu Ubuntu Linux 7.10 amd64 Redhat Enterprise Linux Desktop Workstation 5 client Redhat Enterprise Linux Desktop 5 client Redhat Enterprise Linux 5 Server Little CMS Little CMS 1.16 Little CMS Little CMS 1.15 Little CMS Little CMS 1.14 Little CMS Little CMS 1.13 Little CMS Little CMS 1.12 Little CMS Little CMS 1.11 Little CMS Little CMS 1.10 Little CMS Little CMS 1.09 Little CMS Little CMS 1.08 Little CMS Little CMS 1.07 Debian Linux 4.0 sparc Debian Linux 4.0 s/390 Debian Linux 4.0 powerpc Debian Linux 4.0 mipsel Debian Linux 4.0 mips Debian Linux 4.0 m68k Debian Linux 4.0 ia-64 Debian Linux 4.0 ia-32 Debian Linux 4.0 hppa Debian Linux 4.0 arm Debian Linux 4.0 amd64 Debian Linux 4.0 alpha Debian Linux 4.0 |
| Not Vulnerable: |
Little CMS Little CMS 1.17 |
Discussion
Little CMS Buffer Overflow and Integer Signedness Vulnerabilities
Little CMS is prone to a buffer-overflow vulnerability because it fails to perform adequate checks on user-supplied input. The application is also prone to an integer-signedness issue.
Attackers may leverage one of these issues to execute arbitrary code in the context of the application. Failed attacks will cause denial-of-service conditions.
The buffer-overflow issue affects all versions prior to Little CMS 1.16. The integer-signedness affects all versions prior to 1.17.
Little CMS is prone to a buffer-overflow vulnerability because it fails to perform adequate checks on user-supplied input. The application is also prone to an integer-signedness issue.
Attackers may leverage one of these issues to execute arbitrary code in the context of the application. Failed attacks will cause denial-of-service conditions.
The buffer-overflow issue affects all versions prior to Little CMS 1.16. The integer-signedness affects all versions prior to 1.17.
Exploit / POC
Little CMS Buffer Overflow and Integer Signedness Vulnerabilities
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Little CMS Buffer Overflow and Integer Signedness Vulnerabilities
Solution:
These issues have been addressed in Little CMS 1.17. Please see the references for more information.
Debian Linux 4.0 arm
Debian Linux 4.0 powerpc
Debian Linux 4.0 amd64
Debian Linux 4.0 ia-32
Debian Linux 4.0 hppa
Debian Linux 4.0 sparc
Debian Linux 4.0 s/390
Debian Linux 4.0 alpha
Debian Linux 4.0 mipsel
Debian Linux 4.0 ia-64
Debian Linux 4.0 mips
Solution:
These issues have been addressed in Little CMS 1.17. Please see the references for more information.
Debian Linux 4.0 arm
-
Debian liblcms-utils_1.15-1.1+etch1_arm.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms-utils_1.15 -1.1+etch1_arm.deb -
Debian liblcms1-dev_1.15-1.1+etch1_arm.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1-dev_1.15- 1.1+etch1_arm.deb -
Debian liblcms1_1.15-1.1+etch1_arm.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1_1.15-1.1+ etch1_arm.deb
Debian Linux 4.0 powerpc
-
Debian liblcms-utils_1.15-1.1+etch1_powerpc.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms-utils_1.15 -1.1+etch1_powerpc.deb -
Debian liblcms1-dev_1.15-1.1+etch1_powerpc.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1-dev_1.15- 1.1+etch1_powerpc.deb -
Debian liblcms1_1.15-1.1+etch1_powerpc.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1_1.15-1.1+ etch1_powerpc.deb
Debian Linux 4.0 amd64
-
Debian liblcms-utils_1.15-1.1+etch1_amd64.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms-utils_1.15 -1.1+etch1_amd64.deb -
Debian liblcms1-dev_1.15-1.1+etch1_amd64.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1-dev_1.15- 1.1+etch1_amd64.deb -
Debian liblcms1_1.15-1.1+etch1_amd64.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1_1.15-1.1+ etch1_amd64.deb
Debian Linux 4.0 ia-32
-
Debian liblcms-utils_1.15-1.1+etch1_i386.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms-utils_1.15 -1.1+etch1_i386.deb -
Debian liblcms1-dev_1.15-1.1+etch1_i386.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1-dev_1.15- 1.1+etch1_i386.deb -
Debian liblcms1_1.15-1.1+etch1_i386.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1_1.15-1.1+ etch1_i386.deb
Debian Linux 4.0 hppa
-
Debian liblcms-utils_1.15-1.1+etch1_hppa.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms-utils_1.15 -1.1+etch1_hppa.deb -
Debian liblcms1-dev_1.15-1.1+etch1_hppa.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1-dev_1.15- 1.1+etch1_hppa.deb -
Debian liblcms1_1.15-1.1+etch1_hppa.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1_1.15-1.1+ etch1_hppa.deb
Debian Linux 4.0 sparc
-
Debian liblcms-utils_1.15-1.1+etch1_sparc.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms-utils_1.15 -1.1+etch1_sparc.deb -
Debian liblcms1-dev_1.15-1.1+etch1_sparc.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1-dev_1.15- 1.1+etch1_sparc.deb -
Debian liblcms1_1.15-1.1+etch1_sparc.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1_1.15-1.1+ etch1_sparc.deb
Debian Linux 4.0 s/390
-
Debian liblcms-utils_1.15-1.1+etch1_s390.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms-utils_1.15 -1.1+etch1_s390.deb -
Debian liblcms1-dev_1.15-1.1+etch1_s390.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1-dev_1.15- 1.1+etch1_s390.deb -
Debian liblcms1_1.15-1.1+etch1_s390.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1_1.15-1.1+ etch1_s390.deb
Debian Linux 4.0 alpha
-
Debian liblcms-utils_1.15-1.1+etch1_alpha.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms-utils_1.15 -1.1+etch1_alpha.deb -
Debian liblcms1-dev_1.15-1.1+etch1_alpha.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1-dev_1.15- 1.1+etch1_alpha.deb -
Debian liblcms1_1.15-1.1+etch1_alpha.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1_1.15-1.1+ etch1_alpha.deb
Debian Linux 4.0 mipsel
-
Debian liblcms-utils_1.15-1.1+etch1_mipsel.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms-utils_1.15 -1.1+etch1_mipsel.deb -
Debian liblcms1-dev_1.15-1.1+etch1_mipsel.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1-dev_1.15- 1.1+etch1_mipsel.deb -
Debian liblcms1_1.15-1.1+etch1_mipsel.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1_1.15-1.1+ etch1_mipsel.deb
Debian Linux 4.0 ia-64
-
Debian liblcms-utils_1.15-1.1+etch1_ia64.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms-utils_1.15 -1.1+etch1_ia64.deb -
Debian liblcms1-dev_1.15-1.1+etch1_ia64.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1-dev_1.15- 1.1+etch1_ia64.deb -
Debian liblcms1_1.15-1.1+etch1_ia64.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1_1.15-1.1+ etch1_ia64.deb
Debian Linux 4.0 mips
-
Debian liblcms-utils_1.15-1.1+etch1_mips.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms-utils_1.15 -1.1+etch1_mips.deb -
Debian liblcms1-dev_1.15-1.1+etch1_mips.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1-dev_1.15- 1.1+etch1_mips.deb -
Debian liblcms1_1.15-1.1+etch1_mips.deb
http://security.debian.org/pool/updates/main/l/lcms/liblcms1_1.15-1.1+ etch1_mips.deb
References
Little CMS Buffer Overflow and Integer Signedness Vulnerabilities
References:
References:
- Little CMS Project Page (Little CMS)