CVE-2012-1616
Severity CVSS v4.0:
Pending analysis
Type:
CWE-399
Resource Management Errors
Publication date:
21/06/2012
Last modified:
11/04/2025
Description
Use-after-free vulnerability in icclib before 2.13, as used by Argyll CMS before 1.4 and possibly other programs, allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted ICC profile file.
Impact
Base Score 2.0
9.30
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:argyllcms:argyllcms:*:*:*:*:*:*:*:* | 1.3.7 (including) | |
cpe:2.3:a:argyllcms:argyllcms:0.1.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:argyllcms:argyllcms:0.2.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:argyllcms:argyllcms:0.2.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:argyllcms:argyllcms:0.2.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:argyllcms:argyllcms:0.3.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:argyllcms:argyllcms:0.6.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:argyllcms:argyllcms:0.7.0:beta_8:*:*:*:*:*:* | ||
cpe:2.3:a:argyllcms:argyllcms:1.0.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:argyllcms:argyllcms:1.0.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:argyllcms:argyllcms:1.0.3:*:*:*:*:*:*:* | ||
cpe:2.3:a:argyllcms:argyllcms:1.0.4:*:*:*:*:*:*:* | ||
cpe:2.3:a:argyllcms:argyllcms:1.1.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:argyllcms:argyllcms:1.1.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:argyllcms:argyllcms:1.2.0:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://lists.fedoraproject.org/pipermail/package-announce/2012-May/079762.html
- http://secunia.com/advisories/48921
- http://secunia.com/advisories/49602
- http://security.gentoo.org/glsa/glsa-201206-04.xml
- http://www.argyllcms.com/icc_readme.html
- http://www.osvdb.org/81617
- http://www.securityfocus.com/bid/53240
- https://bugzilla.redhat.com/show_bug.cgi?id=809697
- https://exchange.xforce.ibmcloud.com/vulnerabilities/75162
- http://lists.fedoraproject.org/pipermail/package-announce/2012-May/079762.html
- http://secunia.com/advisories/48921
- http://secunia.com/advisories/49602
- http://security.gentoo.org/glsa/glsa-201206-04.xml
- http://www.argyllcms.com/icc_readme.html
- http://www.osvdb.org/81617
- http://www.securityfocus.com/bid/53240
- https://bugzilla.redhat.com/show_bug.cgi?id=809697
- https://exchange.xforce.ibmcloud.com/vulnerabilities/75162