{"id":"BIT-java-min-2026-41254","details":"Little CMS (lcms2) through 2.18 has an integer overflow in CubeSize in cmslut.c because the overflow check is performed after the multiplication.","aliases":["BIT-java-2026-41254","BIT-jre-2026-41254","CVE-2026-41254","GHSA-4xp6-rcgg-m9qq"],"modified":"2026-09-08T08:47:56.600178663Z","published":"2026-08-17T05:48:03.548Z","database_specific":{"severity":"High","cpes":["cpe:2.3:a:bellsoft:libericajre:*:*:*:*:*:*:*:*"]},"references":[{"type":"ADVISORY","url":"https://abhinavagarwal07.github.io/posts/lcms2-cubesize-overflow/"},{"type":"FIX","url":"https://github.com/mm2/Little-CMS/commit/da6110b1d14abc394633a388209abd5ebedd7ab0"},{"type":"FIX","url":"https://github.com/mm2/Little-CMS/commit/e0641b1828d0a1af5ecb1b11fe22f24fceefd4bc"},{"type":"WEB","url":"https://github.com/mm2/Little-CMS/commit/e0641b1828d0a1af5ecb1b11fe22f24fceefd4bc#commitcomment-183284136"},{"type":"WEB","url":"https://github.com/mm2/Little-CMS/security/advisories/GHSA-4xp6-rcgg-m9qq"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2026/05/msg00014.html"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-41254"},{"type":"WEB","url":"https://openjdk.org/groups/vulnerability/advisories/2026-07-21"},{"type":"ADVISORY","url":"https://www.openwall.com/lists/oss-security/2026/04/17/16"}],"affected":[{"package":{"name":"java-min","ecosystem":"Bitnami","purl":"pkg:bitnami/java-min"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"1.8.0"},{"introduced":"1.9.0"},{"fixed":"8.0.501"},{"introduced":"9.0.0"},{"fixed":"11.0.32"},{"introduced":"12.0.0"},{"fixed":"17.0.20"},{"introduced":"18.0.0"},{"fixed":"21.0.12"},{"introduced":"22.0.0"},{"fixed":"25.0.4"},{"introduced":"26.0.0"},{"fixed":"26.0.2"}]}],"database_specific":{"source":"https://github.com/bitnami/vulndb/tree/main/data/java-min/BIT-java-min-2026-41254.json"},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}],"schema_version":"1.9.0"}