CVE-2026-21487 | InternationalColorConsortium iccDEV up to 2.3.1.1/2.3.1.2 CIccProfile::LoadTag out-of-bounds (ID 340)
A vulnerability labeled as problematic has been found in InternationalColorConsortium iccDEV up to 2.3.1.1/2.3.1.2. This impacts the function CIccProfile::LoadTag. The manipulation results in out-of-bounds read.
This vulnerability was named CVE-2026-21487. The attack may be performed from remote. There is no available exploit.
The affected component should be upgraded.