ColorSync ICC parsing heap overflow

Programs affected: ColorSync (as used by Safari)
Fixed: Mac OS X v10.5.8
Severity: Arbitrarty code execution from remote.
It turns out that one of the sample files for my recent LittleCMS (lcms) vulnerabilities also crashed Safari when you attempted to view it.

The cause is a heap-based buffer overflow in Apple's ColorSync component (which handles colour profile parsing). ColorSync is a different parsing implementation to LittleCMS. So it's one of those interesting cases where dissimilar implementations have a very similar bug.

Now fixed in the latest Apple updates.

Chris Evans