CVE-2018-16435: Integer Overflow
A flaw was found in Little CMS (aka Little Color Management System) 2.9. An integer overflow in the AllocateDataSet function in cmscgats.c, leading to a heap-based buffer overflow in the SetData function via a crafted file in the second argument to cmsIT8LoadFromFile.
References: https://github.com/mm2/Little-CMS/issues/171
Upstream Fix: https://github.com/mm2/Little-CMS/commit/768f70ca405cd3159d990e962d54456773bb8cf8
Other sources
Little CMS (aka Little Color Management System) 2.9 has an integer overflow in the AllocateDataSet function in cmscgats.c, leading to a heap-based buffer overflow in the SetData function via a crafted file in the second argument to cmsIT8LoadFromFile.
— Launchpad
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2018-16435?
CVE-2018-16435 is classified as a high severity vulnerability due to the potential for exploit leading to a heap-based buffer overflow.
How do I fix CVE-2018-16435?
To fix CVE-2018-16435, update to the patched versions of Little CMS or the affected Chromium browser mentioned in the advisory.
What versions of Little CMS are affected by CVE-2018-16435?
Little CMS version 2.9 is affected by CVE-2018-16435.
Can CVE-2018-16435 be exploited remotely?
Yes, CVE-2018-16435 can potentially be exploited remotely via crafted files processed by the vulnerable applications.
What impact does CVE-2018-16435 have on applications?
CVE-2018-16435 may allow an attacker to execute arbitrary code on the affected system by triggering a buffer overflow.