REDHAT-BUG-2459420: Integer Overflow
Published Apr 18, 2026
·Updated
Little CMS (lcms2) through 2.18 has an integer overflow in CubeSize in cmslut.c because the overflow check is performed after the multiplication.
Affected Software
1 affected component
Little Cms lcms2<=2.18
Event History
Apr 18, 2026
Data Sourced
via Red Hat·07:01 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2459420?
The severity of REDHAT-BUG-2459420 is medium, rated at 4.
2
What vulnerability type is associated with REDHAT-BUG-2459420?
REDHAT-BUG-2459420 is associated with the vulnerability type Integer Overflow.
3
How do I fix REDHAT-BUG-2459420?
To fix REDHAT-BUG-2459420, you should update to the latest version of Little CMS (lcms2) that addresses the integer overflow.
4
What software is affected by REDHAT-BUG-2459420?
The software affected by REDHAT-BUG-2459420 is Little CMS, specifically version 2.18.
5
When was REDHAT-BUG-2459420 published?
REDHAT-BUG-2459420 was published on April 18, 2026.