Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:
Category:Fedora Local Security Checks
Title:Fedora Core 9 FEDORA-2009-2928 (lcms)
The remote host is missing an update to lcms
announced via advisory FEDORA-2009-2928.


* Mon Mar 23 2009 kwizart < kwizart at > - 1.18-1
- Update to 1.18 (final)
- Remove upstreamed patches
- Disable autoreconf - patch libtool to prevent rpath issue


[ 1 ] Bug #487508 - CVE-2009-0723 LittleCms integer overflow
[ 2 ] Bug #487512 - CVE-2009-0733 LittleCms lack of upper-bounds check on sizes
[ 3 ] Bug #487509 - CVE-2009-0581 LittleCms memory leak

Solution: Apply the appropriate updates.

This update can be installed with the yum update program. Use
su -c 'yum update lcms' at the command line.
For more information, refer to Managing Software with yum,
available at

CVSS Score:

CVSS Vector:

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2009-0723
BugTraq ID: 34185
Bugtraq: 20090320 LittleCMS vulnerabilities (OpenJDK, Firefox, GIMP, etc. impacted) (Google Search)
Bugtraq: 20090320 [oCERT-2009-003] LittleCMS integer errors (Google Search)
Debian Security Information: DSA-1745 (Google Search)
Debian Security Information: DSA-1769 (Google Search)
RedHat Security Advisories: RHSA-2009:0377
SuSE Security Announcement: SUSE-SR:2009:007 (Google Search)
XForce ISS Database: littlecms-unspecified-bo(49326)
Common Vulnerability Exposure (CVE) ID: CVE-2009-0733
XForce ISS Database: littlecms-readsetofcurves-bo(49330)
Common Vulnerability Exposure (CVE) ID: CVE-2009-0581
XForce ISS Database: littlecms-unspecified-dos(49328)
CopyrightCopyright (c) 2009 E-Soft Inc.

This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.

© 1998-2022 E-Soft Inc. All rights reserved.