| Package | lcms2 |
|---|---|
| Version | 2.8-4+deb9u2 (stretch), 2.9-3+deb10u1 (buster) |
| Related CVEs | CVE-2026-41254 |
An integer overflow issue was discovered in Little CMS.
For Debian 10 buster, these problems have been fixed in version 2.9-3+deb10u1.
For Debian 9 stretch, these problems have been fixed in version 2.8-4+deb9u2.
We recommend that you upgrade your lcms2 packages.
Further information about Extended LTS security advisories can be found in the dedicated section of our website.