PT-2026-81478 · Openexr · Openexr

·

CVE-2026-59985

·

Published

2026-08-25

·

Updated

2026-09-02

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions OpenEXR versions 3.2.0 through 3.2.10 OpenEXR versions 3.3.0 through 3.3.12 OpenEXR versions 3.4.0 through 3.4.13
Description On ILP32 builds, a heap out-of-bounds read occurs when processing a crafted RLE-compressed EXR image. The issue arises because the 64-bit unpacked size truncates before allocation in OpenEXRCore decoding.c, leading the unpack 32bit() function to read beyond the allocated buffer, which can result in a denial of service.
Recommendations Update versions 3.2.0 through 3.2.10 to version 3.2.11. Update versions 3.3.0 through 3.3.12 to version 3.3.13. Update versions 3.4.0 through 3.4.13 to version 3.4.14.

Exploit

Fix

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-59985
ECHO-7AD0-BC41-BCF6
GHSA-V6V5-344M-64VM
OPENSUSE-SU-2026:11612-1
OPENSUSE-SU-2026:21737-1

Affected Products

Openexr