Root has patched CVE-2026-41254 in the rootio-lcms2 package for Root:Debian:13. Multiple fixed versions available.
{ "distro": "debian", "distro_version": "13", "severity": "HIGH", "source": "Root" }
[ "2.16-2.root.io.1" ]
"root.io.1"
true
"https://api.root.io/external/osv/ROOT-OS-DEBIAN-13-CVE-2026-41254.json"
1
"2.16-2"