Memory leak in LittleCMS (aka lcms or liblcms) before 1.18beta2, as used in Firefox 3.1beta, OpenJDK, and GIMP, allows context-dependent attackers to cause a denial of service (memory consumption and application crash) via a crafted image file.
References
Configurations
History
21 Mar 2025, 16:36
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:* | |
First Time |
Oracle openjdk
Oracle |
Information
Published : 2009-03-23 14:19
Updated : 2025-04-09 00:30
NVD link : CVE-2009-0581
Mitre link : CVE-2009-0581
CVE.ORG link : CVE-2009-0581
JSON object : View
Products Affected
oracle
- openjdk
littlecms
- little_cms
mozilla
- firefox
gimp
- gimp
CWE
CWE-401
Missing Release of Memory after Effective Lifetime