Alerts This Week
Warning Icon 1 1,123
Alerts This Week
Warning Icon 1 1,123

Debian 11 lcms2 Critical Integer Overflow Advisory DLA-4568-1

debian lts
Calendar Grey May 7, 2026
Dist Debian Esm H88
Integer overflow flaw found in lcms2 for Debian 11 fixed. Upgrade to secure your systems and maintain functionality.
It was discovered that there was an integer overflow vulnerability in lcms2, aka Little CMS

Summary

For Debian 11 bullseye, this problem has been fixed in version
2.8-4+deb9u2.

We recommend that you upgrade your lcms2 packages.

For the detailed security status of lcms2 please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/lcms2

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS



Severity
critical
Lowest
Low
Medium
High
Critical

Package: lcms2
Version: 2.8-4+deb9u2
CVE ID: CVE-2026-41254
Debian Bug: 1134335

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here