Stack Buffer Overflow Vulnerability in ICC Color Management Tool by International Color Consortium
CVE-2026-30987
7.8HIGH
What is CVE-2026-30987?
A stack buffer overflow vulnerability exists in the CIccTagNum<>::GetValues() function of the iccDEV library, impacting versions prior to 2.3.1.5. This flaw can lead to stack memory corruption or crashes, potentially allowing an attacker to disrupt service or execute arbitrary code. Users are encouraged to upgrade to version 2.3.1.5 or later to mitigate this risk.
Affected Version(s)
iccDEV < 2.3.1.5
