Vulnerabilidades em InternationalColorConsortium

105 resultados
Análise Vexday

O portfólio de vulnerabilidades associado ao International Color Consortium reúne 104 CVEs catalogadas, com uma única entrada de severidade crítica e nenhuma PoC pública disponível, o que limita o vetor de exploração imediata. A taxa de exploração ativa é nula — nenhuma entrada consta no catálogo KEV da CISA —, posicionando-se abaixo da média geral do catálogo, o que sugere risco operacional contido no momento. Ainda assim, o volume de 20 CVEs surgidas nos últimos 90 dias merece atenção, indicando ritmo elevado de descobertas recentes. O tipo de falha mais frequente é CWE-20 (validação inadequada de entrada), padrão que tende a se manifestar em componentes de processamento de dados como perfis de cor, e a CVE mais perigosa identificada atualmente, CVE-2026-22861, apresenta EPSS de 0,0059, refletindo baixa probabilidade de exploração no curto prazo segundo os modelos preditivos vigentes.

CVE-2026-25584HIGHiccDEV vulnerable to Stack-based Buffer Overflow in CIccTagFloatNum::GetValues()EPSS 0.2%CVE-2026-34536MEDIUMiccDEV: SO in SIccCalcOp::ArgsUsed()EPSS 0.2%CVE-2026-21500MEDIUMStack Overflow in iccDEV XML Calculator Macro ExpansionEPSS 0.2%CVE-2026-21501MEDIUMStack Overflow in iccDEV Calculator ParserEPSS 0.2%CVE-2026-21491MEDIUMiccDEV has unicode buffer overflow in CIccTagTextDescriptionEPSS 0.2%CVE-2026-21490MEDIUMiccDEV has heap buffer overflow in CIccTagLut16::Validate()EPSS 0.2%CVE-2026-21504MEDIUMHeap Buffer Overflow in iccDEV ToneMap ParserEPSS 0.2%CVE-2026-25502HIGHiccDEV is vulnerable to stack-buffer-overflow in icFixXml()EPSS 0.2%CVE-2026-21681HIGHiccDEV has Undefined Behavior runtime error: nan is outside the range .. IccProfLib/IccTagBasic.cppEPSS 0.2%CVE-2026-25634HIGHiccDEV memcpy-param-overlap in CIccTagMultiProcessElement::Apply()EPSS 0.2%CVE-2026-34541MEDIUMiccDEV: UB in CIccCombinedConnectionConditions::CIccCombinedConnectionConditions()EPSS 0.2%CVE-2026-21505MEDIUMiccDEV has Undefined Behavior (UB) - Invalid Enum ValueEPSS 0.2%CVE-2026-21678HIGHiccDEV has heap-buffer-overflow vulnerability on IccTagXml()EPSS 0.2%CVE-2026-21673HIGHiccDEV has Integer Overflow/Underflow in CIccXmlArrayType::ParseTextCountNum()EPSS 0.2%CVE-2026-21492MEDIUMiccDEV ToneMap Writer has NULL Pointer Member CallEPSS 0.2%CVE-2026-21487MEDIUMiccDEV has Out-of-bounds Read, Use of Out-of-range Pointer Offset and Improper Input ValidationEPSS 0.2%CVE-2026-21502MEDIUMNULL Pointer Dereference in iccDEV XML Tag ParserEPSS 0.2%CVE-2026-21498MEDIUMNULL Pointer Dereference in iccDEV XML Calculator ParserEPSS 0.2%CVE-2026-30979HIGHiccDEV has a heap-based buffer overflow in CIccCalculatorFunc::InitSelectOp()EPSS 0.2%CVE-2026-21497MEDIUMNULL Pointer Dereference in iccDEV Unknown Tag ParserEPSS 0.2%