PT-2026-95453 · Unknown · Openimageio

·

CVE-2026-59956

·

Published

2026-09-18

·

Updated

2026-09-18

CVSS v3.1

6.1

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H
Name of the Vulnerable Software and Affected Versions OpenImageIO versions prior to 3.0.20.0 OpenImageIO versions prior to 3.1.15.0 OpenImageIO versions prior to 3.2.0.3-beta1
Description An issue exists when processing uncompressed 16-bit IFF images containing a z-buffer. The IffInput::readimg() function allocates a temporary scanline based on m header.rgba count but performs a copy operation using m header.pixel bytes(), which includes z-buffer bytes in its stride. This results in an oversized memcpy that reads beyond the temporary heap buffer, potentially causing a crash or the disclosure of adjacent heap data.
Recommendations Update to version 3.0.20.0. Update to version 3.1.15.0. Update to version 3.2.0.3-beta1.

Exploit

Fix

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-59956
GHSA-HJFV-GVXC-QGVH

Affected Products

Openimageio