CVE-2026-21501: Stack Overflow in iccDEV Calculator Parser
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to version 2.3.1.2, iccDEV is vulnerable to stack overflow in the calculator parser. This issue has been patched in version 2.3.1.2.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2026-21501?
CVE-2026-21501 is classified as a critical severity vulnerability due to the risk of stack overflow which can lead to remote code execution.
How do I fix CVE-2026-21501?
To fix CVE-2026-21501, you should update iccDEV to version 2.3.1.2 or later where the vulnerability has been patched.
What products are affected by CVE-2026-21501?
CVE-2026-21501 affects iccDEV versions prior to 2.3.1.2.
Can CVE-2026-21501 lead to data breaches?
Yes, CVE-2026-21501 can potentially lead to data breaches if exploited, as it may allow unauthorized access to system resources.
Is CVE-2026-21501 under active exploitation?
As of now, there are no public reports indicating that CVE-2026-21501 is actively being exploited in the wild.