PT-2026-1393 · Iccdev · Iccdev

Xsscx

·

Published

2026-01-06

·

Updated

2026-01-06

·

CVE-2026-21673

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions iccDEV versions prior to 2.3.1.1
Description iccDEV is a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1 and below contain overflows and underflows within the CIccXmlArrayType::ParseTextCountNum() function. This issue impacts users of the iccDEV library when processing ICC color profiles.
Recommendations Update to version 2.3.1.1 or later.

Exploit

Fix

Incorrect Type Conversion or Cast

Integer Overflow

Weakness Enumeration

Related Identifiers

CVE-2026-21673
GHSA-G66G-F82C-VGM6

Affected Products

Iccdev