CVE-2026-30982 - iccDEV has a heap out-of-bounds read in CIccPcsXform::pushXYZConvert()

CVE-2026-30982 - iccDEV has a heap out-of-bounds read in CIccPcsXform::pushXYZConvert()

CVE ID :CVE-2026-30982 Published : March 10, 2026, 6:18 p.m. | 39 minutes ago Description :iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap out-of-bounds read in CIccPcsXform::pushXYZConvert() causing crash and potentially leaking memory contents. This vulnerability is fixed in 2.3.1.5. Severity: 6.1 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Published
March 10, 2026