Home

Description

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to version 2.3.1.2, iccDEV is vulnerable to division by zero in the TIFF Image Reader. This issue has been patched in version 2.3.1.2.

PUBLISHED Reserved 2025-12-29 | Published 2026-01-07 | Updated 2026-01-07 | Assigner GitHub_M




MEDIUM: 5.5CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Problem types

CWE-20: Improper Input Validation

CWE-369: Divide By Zero

Product status

< 2.3.1.2
affected

References

github.com/...iccDEV/security/advisories/GHSA-xhrm-79rg-5784

github.com/...ommit/10c34179a0332a869c2b46e305a9cd23a6311dfe

cve.org (CVE-2026-21495)

nvd.nist.gov (CVE-2026-21495)

Download JSON