Lucene search

K
osvGoogleOSV:CVE-2018-16435
HistorySep 04, 2018 - 12:29 a.m.

CVE-2018-16435

2018-09-0400:29:02
Google
osv.dev
6

5.5 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

53.4%

Little CMS (aka Little Color Management System) 2.9 has an integer overflow in the AllocateDataSet function in cmscgats.c, leading to a heap-based buffer overflow in the SetData function via a crafted file in the second argument to cmsIT8LoadFromFile.