Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
5.5
iccDEV Color Management Software Crashes Due to Uncontrolled Recursion
CVE-2026-30980
Summary
Using outdated versions of iccDEV can cause your computer to crash when working with color profiles. This happens because of a mistake in the code that can cause a never-ending loop, leading to a crash. Update to version 2.3.1.5 or later to fix this issue.
What to do
No fix is available yet. Check with your software vendor for updates.
Affected software
| Vendor | Product | Affected versions | Fix available |
|---|---|---|---|
| color | iccdev | <= 2.3.1.5 | – |
Original title
iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a stack overflow in CIccBasicStructFactory::CreateStruct() causing uncontroll...
Original description
iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a stack overflow in CIccBasicStructFactory::CreateStruct() causing uncontrolled recursion/stack exhaustion and crash. This vulnerability is fixed in 2.3.1.5.
nvd CVSS3.1
5.5
Vulnerability type
CWE-121
Stack-based Buffer Overflow
CWE-400
Uncontrolled Resource Consumption
CWE-674
Published: 10 Mar 2026 · Updated: 13 Mar 2026 · First seen: 11 Mar 2026