PT-2026-36080 · Little Cms · Little Cms Color Engine

Published

2026-04-30

·

Updated

2026-04-30

·

CVE-2026-42798

CVSS v3.1

4.0

Medium

VectorAV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:L
Little CMS (lcms2) 2.16 through 2.18 before 2.19 has an integer overflow in ParseCube in cmscgats.c.

Fix

Integer Overflow

Weakness Enumeration

Related Identifiers

CVE-2026-42798

Affected Products

Little Cms Color Engine