VYPR
Unrated severityNVD Advisory· Published Jan 21, 2014· Updated Apr 29, 2026

CVE-2013-4160

CVE-2013-4160

Description

Little CMS (lcms2) before 2.5, as used in OpenJDK 7 and possibly other products, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via vectors related to (1) cmsStageAllocLabV2ToV4curves, (2) cmsPipelineDup, (3) cmsAllocProfileSequenceDescription, (4) CurvesAlloc, and (5) cmsnamed.

Affected products

18
  • cpe:2.3:a:littlecms:little_cms_color_engine:*:*:*:*:*:*:*:*+ 17 more
    • cpe:2.3:a:littlecms:little_cms_color_engine:*:*:*:*:*:*:*:*range: <=2.4
    • cpe:2.3:a:littlecms:little_cms_color_engine:1.07:*:*:*:*:*:*:*
    • cpe:2.3:a:littlecms:little_cms_color_engine:1.08:*:*:*:*:*:*:*
    • cpe:2.3:a:littlecms:little_cms_color_engine:1.09:*:*:*:*:*:*:*
    • cpe:2.3:a:littlecms:little_cms_color_engine:1.10:*:*:*:*:*:*:*
    • cpe:2.3:a:littlecms:little_cms_color_engine:1.11:*:*:*:*:*:*:*
    • cpe:2.3:a:littlecms:little_cms_color_engine:1.12:*:*:*:*:*:*:*
    • cpe:2.3:a:littlecms:little_cms_color_engine:1.13:*:*:*:*:*:*:*
    • cpe:2.3:a:littlecms:little_cms_color_engine:1.14:*:*:*:*:*:*:*
    • cpe:2.3:a:littlecms:little_cms_color_engine:1.15:*:*:*:*:*:*:*
    • cpe:2.3:a:littlecms:little_cms_color_engine:1.16:*:*:*:*:*:*:*
    • cpe:2.3:a:littlecms:little_cms_color_engine:1.17:*:*:*:*:*:*:*
    • cpe:2.3:a:littlecms:little_cms_color_engine:1.18:*:*:*:*:*:*:*
    • cpe:2.3:a:littlecms:little_cms_color_engine:1.19:*:*:*:*:*:*:*
    • cpe:2.3:a:littlecms:little_cms_color_engine:2.0:*:*:*:*:*:*:*
    • cpe:2.3:a:littlecms:little_cms_color_engine:2.1:*:*:*:*:*:*:*
    • cpe:2.3:a:littlecms:little_cms_color_engine:2.2:*:*:*:*:*:*:*
    • cpe:2.3:a:littlecms:little_cms_color_engine:2.3:*:*:*:*:*:*:*

Patches

1

Vulnerability mechanics

Generated by null/stub on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.

References

6

News mentions

0

No linked articles in our index yet.