CVE-2026-21692CWE-20CWE-588CWE-704CWE-843

iccDEV has Type Confusion in ToXmlCurve() at IccXML/IccLibXML/IccMpeXml.cpp

High · published January 7, 2026

CVSS v3.1
8.8
EPSS
0%
Percentile
29.1
In the wild
Unconfirmed
What it is

⚡ A sneaky type confusion vulnerability lurks in iccDEV versions prior to 2.3.1.2, possibly letting attackers cause some serious color chaos! 🎨 Think of this vulnerability like a faulty color printer that misinterprets the ink settings, producing colors that aren't just wrong but could cause a whole batch of prints to turn out unusable. It's like ordering a vibrant red, only to receive a muddy brown — not exactly what you wanted! An attacker could exploit this vulnerability to manipulate ICC color profiles, leading to unexpected behavior in applications that rely on accurate color management. This might cause visual disruptions in critical systems, affecting everything from graphic design to manufacturing processes where color precision is paramount.

Put simply

Think of this vulnerability like a faulty color printer that misinterprets the ink settings, producing colors that aren't just wrong but could cause a whole batch of prints to turn out unusable. It's like ordering a vibrant red, only to receive a muddy brown — not exactly what you wanted! The type confusion in the `ToXmlCurve()` function allows an attacker to send crafted data that the library misinterprets, potentially leading to unpredictable outcomes and crashes.

What to do

An attacker could exploit this vulnerability to manipulate ICC color profiles, leading to unexpected behavior in applications that rely on accurate color management. This might cause visual disruptions in critical systems, affecting everything from graphic design to manufacturing processes where color precision is paramount. Upgrade to version 2.3.1.2 immediately to patch this vulnerability. As no workarounds are available, ensuring you're on the latest version is crucial to maintain color accuracy and system integrity. Check your projects and dependencies to confirm they are updated! You've got this! Patch up and color your world safely! 🛡️

The record
Technical detail
CVSS v3.1
8.8 · HIGH
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS v4.0
Not supplied
EPSS
0.00360 · 29.1th percentile
Weaknesses
CWE-20 · Improper Input Validation; CWE-588 · Attempt to Access Child of a Non-structure Pointer; CWE-704 · Incorrect Type Conversion or Cast; CWE-843 · Access of Resource Using Incompatible Type ('Type Confusion')
Published
2026-01-07T21:56Z
EPSS history
Timeline
  • 07 JAN 21:56Z
    iccDEV has Type Confusion in ToXmlCurve() at IccXML/IccLibXML/IccMpeXml.cpp
    cvelistv5