PT-2026-30662 · Openexr+3 · Openexr+3

·

CVE-2026-34588

·

Published

2026-04-06

·

Updated

2026-09-02

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions OpenEXR versions 3.1.0 through 3.2.6, versions prior to 3.3.9, and versions prior to 3.4.9
Description OpenEXR, an image storage format used in the motion picture industry, contains a flaw in the internal exr undo piz() function. Specifically, the function uses signed 32-bit arithmetic to advance a wavelet pointer, which can lead to integer overflow and wrap-around when processing a crafted EXR file. This results in out-of-bounds reads and writes during wavelet decoding, as the function operates in place.
Recommendations Update OpenEXR to version 3.2.7 or later. Update OpenEXR to version 3.3.9 or later. Update OpenEXR to version 3.4.9 or later.

Exploit

Fix

Integer Overflow

Memory Corruption

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:15887
ALSA-2026:15888
ALSA-2026:19146
ALSA-2026:19359
CVE-2026-34588
ECHO-1364-3D73-650F
GHSA-588R-CR5C-W6HF
JLSEC-2026-148
OESA-2026-1840
OESA-2026-1841
OESA-2026-1842
OESA-2026-1843
OPENSUSE-SU-2026:10505-1
OPENSUSE-SU-2026:20605-1
PYSEC-2026-2845
RHSA-2026:15887
RHSA-2026:15888
RHSA-2026:17656
RHSA-2026:17658
RHSA-2026:17659
RHSA-2026:17660
RHSA-2026:19146
RHSA-2026:19359
RHSA-2026:19587
SUSE-SU-2026:21372-1
USN-8259-1

Affected Products

Linuxmint
Openexr
Rocky Linux
Ubuntu