{
  "modified": "2025-08-09T19:01:27Z",
  "published": "2012-06-21T15:55:12Z",
  "id": "CVE-2012-1616",
  "details": "Use-after-free vulnerability in icclib before 2.13, as used by Argyll CMS before 1.4 and possibly other programs, allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted ICC profile file.",
  "references": [
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/48921"
    },
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/49602"
    },
    {
      "type": "ADVISORY",
      "url": "http://security.gentoo.org/glsa/glsa-201206-04.xml"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=809697"
    },
    {
      "type": "WEB",
      "url": "http://lists.fedoraproject.org/pipermail/package-announce/2012-May/079762.html"
    },
    {
      "type": "WEB",
      "url": "http://www.argyllcms.com/icc_readme.html"
    },
    {
      "type": "WEB",
      "url": "http://www.osvdb.org/81617"
    },
    {
      "type": "WEB",
      "url": "http://www.securityfocus.com/bid/53240"
    },
    {
      "type": "WEB",
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/75162"
    }
  ]
}
