CVE-2026-21488 | InternationalColorConsortium iccDEV up to 2.3.1.1/2.3.1.2 CIccTagText::Read heap-based overflow (GHSA-4j2g-rvv4-86vg)
A vulnerability was found in InternationalColorConsortium iccDEV up to 2.3.1.1/2.3.1.2 and classified as critical. The affected element is the function CIccTagText::Read. Such manipulation leads to heap-based buffer overflow.
This vulnerability is documented as CVE-2026-21488. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.