A vulnerability, which was classified as problematic, was found in Little CMS up to 2.18. This impacts an unknown function of the file cmscgats.c of the component ParseCube. Executing a manipulation can lead to integer overflow.
This vulnerability is tracked as CVE-2026-42798. The attack is restricted to local execution. No exploit exists.
You should upgrade the affected component.