>> Little CMS Library ICC Profiles Processing Buffer Overflow Vulnerability
Title : Little CMS Library ICC Profiles Processing Buffer Overflow Vulnerability VUPEN ID : VUPEN/ADV-2007-1837 CVE ID : CVE-2007-2741
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-05-16
Technical Description
A vulnerability has been identified in Little CMS, which could be exploited by attackers to cause a denial of service or execute arbitrary code. This issue is caused by a stack overflow error when parsing ICC profiles embedded within JPG images, which could be exploited by attackers to crash an application linked against a vulnerable library or compromise a vulneable system via a specially crafted image.