CVE-2026-30982 | InternationalColorConsortium iccDEV up to 2.3.1.5 pushXYZConvert heap-based overflow (ID 625)
A vulnerability was found in InternationalColorConsortium iccDEV up to 2.3.1.5. It has been rated as critical. This affects the function CIccPcsXform::pushXYZConvert. This manipulation causes heap-based buffer overflow.
This vulnerability is tracked as CVE-2026-30982. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is advised.