[Bug 3639] [IcedTea8] Backport "CVE-2018-16435 lcms2: heap-based buffer overflow in SetData function in cmsIT8LoadFromFile" to in-tree LCMS

bugzilla-daemon at icedtea.classpath.org bugzilla-daemon at icedtea.classpath.org
Mon Nov 12 04:49:07 UTC 2018


https://icedtea.classpath.org/bugzilla/show_bug.cgi?id=3639

--- Comment #1 from hg commits <mercurial at icedtea.classpath.org> ---
details:
http://icedtea.classpath.org//hg/icedtea8-forest/jdk?cmd=changeset;node=550251c29c1b
author: andrew
date: Mon Oct 22 06:31:35 2018 +0100

    PR3639, CVE-2018-16435: lcms2: heap-based buffer overflow in SetData
function in cmsIT8LoadFromFile
    From
https://github.com/mm2/Little-CMS/commit/768f70ca405cd3159d990e962d54456773bb8cf8

-- 
You are receiving this mail because:
You are on the CC list for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mail.openjdk.java.net/pipermail/distro-pkg-dev/attachments/20181112/8ad07d0f/attachment-0001.html>


More information about the distro-pkg-dev mailing list