First published: Thu Sep 20 2018(Updated: )
USN-3770-1 fixed a vulnerability in Little CMS. This update provides the corresponding update for Ubuntu 12.04 ESM. Original advisory details: Pedro Ribeiro discoreved that Little CMS incorrectly handled certain files. An attacker could possibly use this issue to cause a denial of service. (CVE-2013-4276) Ibrahim El-Sayed discovered that Little CMS incorrectly handled certain files. An attacker could possibly use this issue to cause a denial of service. (CVE-2016-10165) Quang Nguyen discovered that Little CMS incorrectly handled certain files. An attacker could possibly use this issue to execute arbitrary code. (CVE-2018-16435)
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/liblcms2-utils | <2.2+git20110628-2ubuntu3.3 | 2.2+git20110628-2ubuntu3.3 |
Ubuntu | =12.04 | |
All of | ||
ubuntu/liblcms-utils | <1.19.dfsg-1ubuntu3.1 | 1.19.dfsg-1ubuntu3.1 |
Ubuntu | =12.04 | |
All of | ||
ubuntu/liblcms2-2 | <2.2+git20110628-2ubuntu3.3 | 2.2+git20110628-2ubuntu3.3 |
Ubuntu | =12.04 | |
All of | ||
ubuntu/liblcms1 | <1.19.dfsg-1ubuntu3.1 | 1.19.dfsg-1ubuntu3.1 |
Ubuntu | =12.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Contains the following vulnerabilities)
USN-3770-2 addresses a vulnerability that could potentially lead to a denial of service.
To fix USN-3770-2, update the affected packages to the specified remedied versions for Ubuntu 12.04.
The affected packages in USN-3770-2 include liblcms2-utils, liblcms-utils, liblcms2-2, and liblcms1 for Ubuntu 12.04.
The vulnerability in USN-3770-2 was discovered by Pedro Ribeiro.
Yes, USN-3770-2 specifically affects Ubuntu 12.04.