Little CMS (lcms2) through 2.18 has an integer overflow in CubeSize in cmslut.c because the overflow check is performed after the multiplication. (CVE-2026-41254)
{ "section": "core" }
"https://advisories.mageia.org/MGASA-2026-0214.json"