PT-2026-81478 · Openexr · Openexr
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
OpenEXR versions 3.2.0 through 3.2.10
OpenEXR versions 3.3.0 through 3.3.12
OpenEXR versions 3.4.0 through 3.4.13
Description
On ILP32 builds, a heap out-of-bounds read occurs when processing a crafted RLE-compressed EXR image. The issue arises because the 64-bit unpacked size truncates before allocation in OpenEXRCore decoding.c, leading the
unpack 32bit() function to read beyond the allocated buffer, which can result in a denial of service.Recommendations
Update versions 3.2.0 through 3.2.10 to version 3.2.11.
Update versions 3.3.0 through 3.3.12 to version 3.3.13.
Update versions 3.4.0 through 3.4.13 to version 3.4.14.
Exploit
Fix
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Openexr