Security Advisory

CVE-2015-4504

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2015-09-24 01:00:00
Last updated 2024-08-06 06:18:11
Assigner mozilla
CVSS score not scored
State PUBLISHED

Description

The lut_inverse_interp16 function in the QCMS library in Mozilla Firefox before 41.0 allows remote attackers to obtain sensitive information or cause a denial of service (buffer over-read and application crash) via crafted attributes in the ICC 4 profile of an image.