LWN.net Logo

mozilla: denial of service

Package(s):firefox, thunderbird CVE #(s):CVE-2012-1960
Created:July 18, 2012 Updated:August 1, 2012
Description: From the Ubuntu advisory:

Tony Payne discovered an out-of-bounds memory read in Mozilla's color management library (QCMS). If the user were tricked into opening a specially crafted color profile, an attacker could possibly exploit this to cause a denial of service via application crash.

Alerts:
Ubuntu USN-1509-2 2012-07-17
Ubuntu USN-1509-1 2012-07-17
Ubuntu USN-1510-1 2012-07-17
openSUSE openSUSE-SU-2012:0899-1 2012-07-23
SUSE SUSE-SU-2012:0895-1 2012-07-21
SUSE SUSE-SU-2012:0896-1 2012-07-21
Mandriva MDVSA-2012:110 2012-07-24
openSUSE openSUSE-SU-2012:0917-1 2012-07-27
Mandriva MDVSA-2012:110-1 2012-07-30
openSUSE openSUSE-SU-2012:0924-1 2012-07-30
openSUSE openSUSE-SU-2012:0935-1 2012-08-01
Gentoo 201301-01 2013-01-07

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds