Ubuntu Security Notice USN-1043-1
11th January, 2011
lcms vulnerability
A security issue affects these releases of Ubuntu and its derivatives:
- Ubuntu 10.10
- Ubuntu 10.04 LTS
- Ubuntu 9.10
- Ubuntu 8.04 LTS
Software description
- lcms
Details
It was discovered that a NULL pointer dereference in the code for
handling transformations of monochrome profiles could allow an attacker
to cause a denial of service through a specially crafted image.
(CVE-2009-0793)
Update instructions
The problem can be corrected by updating your system to the following package version:
- Ubuntu 10.10:
- liblcms1 1.18.dfsg-1ubuntu2.10.10.1
- Ubuntu 10.04 LTS:
- liblcms1 1.18.dfsg-1ubuntu2.10.04.1
- Ubuntu 9.10:
- liblcms1 1.18.dfsg-1ubuntu1.1
- Ubuntu 8.04 LTS:
- liblcms1 1.16-7ubuntu1.3
To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades.
In general, a standard system update will make all the necessary changes.