CVE-2026-22046 | InternationalColorConsortium iccDEV up to 2.3.1.1 ICC Color Profile IccProfileXml.cpp ParseBasic heap-based overflow (ID 448 / EUVD-2026-1383)
A vulnerability was found in InternationalColorConsortium iccDEV up to 2.3.1.1. It has been rated as critical. Affected by this issue is the function CIccProfileXml::ParseBasic of the file IccXML/IccLibXML/IccProfileXml.cpp of the component ICC Color Profile Handler. Performing a manipulation results in heap-based buffer overflow.
This vulnerability is identified as CVE-2026-22046. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is advised.