PT-2026-29397 · Iccdev · Iccdev

Xsscx

·

Published

2026-03-31

·

Updated

2026-04-01

·

CVE-2026-34552

CVSS v3.1

6.2

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions iccDEV versions prior to 2.3.1.6
Description iccDEV is a set of libraries and tools for working with ICC color management profiles. Versions prior to 2.3.1.6 contain an Undefined Behavior (UB) issue in the IccTagLut.cpp file. The code performs member access through a null pointer of type CIccApplyCLUT.
Recommendations Versions prior to 2.3.1.6 should be updated to version 2.3.1.6 or later.

Exploit

Fix

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

CVE-2026-34552
GHSA-WGH5-WVV2-R8PQ

Affected Products

Iccdev