Red Hat Bugzilla – Bug 1207073
CVE-2015-0811 Mozilla: Out of bounds read in QCMS library (MFSA 2015-34)
Last modified: 2015-04-02 11:30:54 EDT
Security researcher Felix Gröbert of Google used the Address Sanitizer tool to discover an out of bounds read in the QCMS color management library while transforming images with certain parameters. This could lead to information disclosure. External Reference: http://www.mozilla.org/security/announce/2015/mfsa2015-34.html Acknowledgements: Red Hat would like to thank the Mozilla project for reporting this issue. Upstream acknowledges Felix Gröbert as the original reporter. Statement: This issue does not affect the version of firefox and thunderbird as shipped with Red Hat Enterprise Linux 5, 6 and 7.