A vulnerability has been found in Red Hat Enterprise Linux and classified as critical. Affected is the function icns_decompress of the component ICNS image Handler. Performing a manipulation results in out-of-bounds read.

This vulnerability is reported as CVE-2026-66759. The attack is possible to be carried out remotely. No exploit exists.