iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to version 2.3.1.3, there is a vulnerability IccCmm.cpp:5793 when reading through index during ICC profile processing. The malformed ICC profile triggers improper array bounds validation in the color management module, resulting in an out-of-bounds read that can lead to memory disclosure or segmentation fault from accessing memory beyond the array boundary. This issue has been patched in version 2.3.1.3.
{
"cwe_ids": [
"CWE-119",
"CWE-125",
"CWE-129",
"CWE-787"
],
"cna_assigner": "GitHub_M",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/25xxx/CVE-2026-25585.json"
}{
"source": [
"CPE_RANGE",
"REFERENCES"
],
"cpe": "cpe:2.3:a:color:iccdev:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "2.3.1.3"
}
]
}"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-25585.json"
[
{
"source": "https://github.com/internationalcolorconsortium/iccdev/commit/ba81cd94b9c82b1d3905d45427badbd9d8adfa15",
"signature_type": "Function",
"signature_version": "v1",
"digest": {
"function_hash": "5242576303141145587969681979204806180",
"length": 1650.0
},
"id": "CVE-2026-25585-046eba6f",
"target": {
"function": "CIccTagLut16::Read",
"file": "IccProfLib/IccTagLut.cpp"
},
"deprecated": false
},
{
"source": "https://github.com/internationalcolorconsortium/iccdev/commit/ba81cd94b9c82b1d3905d45427badbd9d8adfa15",
"signature_type": "Function",
"signature_version": "v1",
"digest": {
"function_hash": "272779852234158444705636120679517700477",
"length": 1072.0
},
"id": "CVE-2026-25585-42eb62d4",
"target": {
"function": "CIccCLUT::Init",
"file": "IccProfLib/IccTagLut.cpp"
},
"deprecated": false
},
{
"source": "https://github.com/internationalcolorconsortium/iccdev/commit/ba81cd94b9c82b1d3905d45427badbd9d8adfa15",
"signature_type": "Function",
"signature_version": "v1",
"digest": {
"function_hash": "94210854845716511460495601068855771260",
"length": 1570.0
},
"id": "CVE-2026-25585-59b3c802",
"target": {
"function": "CIccTagLut8::Read",
"file": "IccProfLib/IccTagLut.cpp"
},
"deprecated": false
},
{
"source": "https://github.com/internationalcolorconsortium/iccdev/commit/ba81cd94b9c82b1d3905d45427badbd9d8adfa15",
"signature_type": "Function",
"signature_version": "v1",
"digest": {
"function_hash": "75579330639525103106963448167183670532",
"length": 3035.0
},
"id": "CVE-2026-25585-81420b0c",
"target": {
"function": "CIccTagLutAtoB::Read",
"file": "IccProfLib/IccTagLut.cpp"
},
"deprecated": false
},
{
"source": "https://github.com/internationalcolorconsortium/iccdev/commit/ba81cd94b9c82b1d3905d45427badbd9d8adfa15",
"signature_type": "Line",
"signature_version": "v1",
"digest": {
"line_hashes": [
"215870563474015390880631995707154673556",
"159546380513215116971765230875511678702",
"298964908695673890672950036474457781231",
"133243893950768096929025532905850626063",
"335156641763294431628325660416833063786",
"61585765364201992563937995400240264071",
"262665303324831603922221083977096125927",
"31332505554230779137237506799043848515",
"260145120059704398075758220821180702276",
"262665303324831603922221083977096125927",
"31332505554230779137237506799043848515",
"301173243984739557066419498996407234575",
"51684084490243835855499655502981412528",
"222412578222702631693066653215312970515",
"157940856267855571493090364993774625873",
"17665129578140709852943667077037613974"
],
"threshold": 0.9
},
"id": "CVE-2026-25585-ac3469b5",
"target": {
"file": "IccProfLib/IccTagLut.cpp"
},
"deprecated": false
},
{
"source": "https://github.com/internationalcolorconsortium/iccdev/commit/ba81cd94b9c82b1d3905d45427badbd9d8adfa15",
"signature_type": "Function",
"signature_version": "v1",
"digest": {
"function_hash": "245410388958909338005804232516834015669",
"length": 1709.0
},
"id": "CVE-2026-25585-dfdd518d",
"target": {
"function": "CIccTagGamutBoundaryDesc::Read",
"file": "IccProfLib/IccTagLut.cpp"
},
"deprecated": false
}
]
"2026-07-15T20:28:02Z"