Medium severity6.5NVD Advisory· Published Aug 21, 2026
CVE-2026-50278
CVE-2026-50278
Description
iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions prior to 2.3.2.1 have a CIccEmbedIO::Read8() size_t underflow. The issue arises due to an embedded-profile read defect when parsing ICC profiles containing icSigEmbeddedV5ProfileTag data with icSigEmbeddedProfileType payloads. Version 2.3.2.1 patches the issue. No known workarounds are available.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <2.3.2.1
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.