Vulnerabilidades em InternationalColorConsortium

105 resultados
Análise Vexday

O portfólio de vulnerabilidades associado ao International Color Consortium reúne 104 CVEs catalogadas, com uma única entrada de severidade crítica e nenhuma PoC pública disponível, o que limita o vetor de exploração imediata. A taxa de exploração ativa é nula — nenhuma entrada consta no catálogo KEV da CISA —, posicionando-se abaixo da média geral do catálogo, o que sugere risco operacional contido no momento. Ainda assim, o volume de 20 CVEs surgidas nos últimos 90 dias merece atenção, indicando ritmo elevado de descobertas recentes. O tipo de falha mais frequente é CWE-20 (validação inadequada de entrada), padrão que tende a se manifestar em componentes de processamento de dados como perfis de cor, e a CVE mais perigosa identificada atualmente, CVE-2026-22861, apresenta EPSS de 0,0059, refletindo baixa probabilidade de exploração no curto prazo segundo os modelos preditivos vigentes.

CVE-2026-21499MEDIUMNULL Pointer Dereference in iccDEV XML ParserEPSS 0.2%CVE-2026-21674LOWiccDEV has a Memory Leak in its CIccProfileXml::ParseTag() Error PathEPSS 0.2%CVE-2026-21496MEDIUMNULL Pointer Dereference in iccDEV Signature ParserEPSS 0.2%CVE-2026-21506MEDIUMiccDEV is Vulnerable to Null Pointer Dereference in CIccProfileXml::ParseBasic() Leading to Denial of ServiceEPSS 0.2%CVE-2026-21503MEDIUMiccDEV has Undefined Behavior - Null Pointer Passed to memcpy() in CIccTagSparseMatrixArrayEPSS 0.2%CVE-2026-21493MEDIUMiccDEV has Type Confusion during XML Curve SerializationEPSS 0.2%CVE-2026-34555MEDIUMiccDEV: SBO in CIccTagFixedNum::GetValues()EPSS 0.2%CVE-2026-30980MEDIUMiccDEV has a stack overflow in CIccBasicStructFactory::CreateStruct()EPSS 0.2%CVE-2026-31795HIGHiccDEV has a stack buffer overflow write in CIccXform3DLut::Apply()EPSS 0.2%CVE-2026-30985HIGHiccDEV has a heap-based buffer overflow write in CIccMatrixMath::SetRange()EPSS 0.2%CVE-2026-31796HIGHiccDEV has a heap-based buffer overflow in icCurvesFromXml()EPSS 0.2%CVE-2026-27692HIGHiccDEV has HBO in CIccTagTextDescription::Release()EPSS 0.2%CVE-2026-30986MEDIUMiccDEV has a heap-based buffer overflow write in CIccCLUT::Interp3d()EPSS 0.2%CVE-2026-31792HIGHiccDEV has a null pointer dereference in CIccTagXmlStruct::ParseTag()EPSS 0.2%CVE-2026-27691MEDIUMiccDEV has SIO in parse3DTable() at iccFromCube.cpp Line 218EPSS 0.2%CVE-2026-21494MEDIUMiccDEV has heap buffer overflow in CIccTagLut8::Validate()EPSS 0.2%CVE-2026-34548MEDIUMiccDEV: UB at IccUtilXml.cppEPSS 0.2%CVE-2026-34550MEDIUMiccDEV: UB at IccIO.cppEPSS 0.2%CVE-2026-34553MEDIUMiccDEV: DoS in CIccCLUT::Iterate() & CIccMBB::Describe()EPSS 0.2%CVE-2026-34554MEDIUMiccDEV: HBO in CIccApplyCmmSearch::costFunc()EPSS 0.2%