Ubuntu 26.04 LTS Vulnerability in Little CMS
Article Content
- •A vulnerability in Little CMS affects Ubuntu 26.04 LTS and 25.10.
- •The flaw allows denial of service via specially crafted ICC profiles.
- •Users should update to the latest liblcms2-2 packages to mitigate risks.
A vulnerability in the Little CMS color management library affects Ubuntu 26.04 LTS and 25.10. Discovered on April 30, 2026, the flaw allows attackers to crash the library by using specially crafted ICC profiles, leading to a denial of service. The issue is tracked as CVE-2026-42798. Users are advised to update to the patched versions of liblcms2-2 to mitigate the risk. The vulnerability does not appear to have been actively exploited at this time. Standard system updates will address the issue for affected systems. Ubuntu Pro offers extended security coverage for users with multiple machines. The vulnerability highlights the importance of regular updates to maintain system security.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Ubuntu and CVE-2026-42798 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
SUSE Security Updates Address Multiple Vulnerabilities in Linux Packages SUSE has released security updates addressing three vulnerabilities in its Linux packages. The vulnerabilities include CVE-2026-63729, a heap use-after-free issue in texlive that could lead to application crashes or arbitrary code execution, published on 2026-07-21. CVE-2026-41254, an information disclosure or denial…
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…