4
/ 10
MEDIUM
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:L
Description
Little CMS (lcms2) 2.16 through 2.18 before 2.19 has an integer overflow in ParseCube in cmscgats.c.
Basic Information
ID
CVE-2026-42798
Source
mitre
Published
Apr 30, 2026 at 06:34
Modified
Apr 30, 2026 at 06:49
Affected Product
Vendor
littlecms
Product
little cms color engine
Version
2.16
Affected Versions
littlecms little cms color engine 2.16