yocto ▾
›
kirkstone ▾
›
component
›
lcms
Component Overview
Vulnerability Overview
Name
lcms
Version
2.13.1
Type
library
Description
Little cms is a small-footprint, speed optimized color management engine
Licenses
MIT
PURL
-
CPE
cpe:2.3:*:littlecms:little_cms:2.13.1:*:*:*:*:*:*:*
Other Versions
#
Project
Branch
Version
yocto
master
2.19.1
yocto
scarthgap
2.16
Vulnerabilities
#
Name
Analysis
Description
CVE-2026-41254
Exploitable
Little CMS (lcms2) through 2.18 has an integer overflow in CubeSize in cmslut.c because the overflow check is performed after the multiplication.