CVE-2024-55195
- EPSS 0.07%
- Veröffentlicht 23.01.2025 22:15:14
- Zuletzt bearbeitet 28.01.2025 15:15:12
An allocation-size-too-big bug in the component /imagebuf.cpp of OpenImageIO v3.1.0.0dev may cause a Denial of Service (DoS) when the program to requests to allocate too much space.
CVE-2024-55194
- EPSS 0.07%
- Veröffentlicht 23.01.2025 22:15:14
- Zuletzt bearbeitet 29.01.2025 15:19:50
OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component /OpenImageIO/fmath.h.
CVE-2024-55193
- EPSS 0.05%
- Veröffentlicht 23.01.2025 22:15:14
- Zuletzt bearbeitet 29.01.2025 15:27:45
OpenImageIO v3.1.0.0dev was discovered to contain a segmentation violation via the component /OpenImageIO/string_view.h.
CVE-2024-55192
- EPSS 0.23%
- Veröffentlicht 23.01.2025 22:15:14
- Zuletzt bearbeitet 05.02.2025 15:15:20
OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component OpenImageIO_v3_1_0::farmhash::inlined::Fetch64(char const*).
CVE-2024-40630
- EPSS 0.19%
- Veröffentlicht 15.07.2024 20:15:05
- Zuletzt bearbeitet 21.11.2024 09:31:23
OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation via a format-agnostic API with a feature set, scalability, and robustness needed for feature film production. In affected...
CVE-2023-3430
- EPSS 0.53%
- Veröffentlicht 18.12.2023 14:15:08
- Zuletzt bearbeitet 21.11.2024 08:17:14
A vulnerability was found in OpenImageIO, where a heap buffer overflow exists in the src/gif.imageio/gifinput.cpp file. This flaw allows a remote attacker to pass a specially crafted file to the application, which triggers a heap-based buffer overflo...
CVE-2023-42299
- EPSS 11.6%
- Veröffentlicht 02.11.2023 22:15:09
- Zuletzt bearbeitet 21.11.2024 08:22:25
Buffer Overflow vulnerability in OpenImageIO oiio v.2.4.12.0 allows a remote attacker to execute arbitrary code and cause a denial of service via the read_subimage_data function.
CVE-2023-42295
- EPSS 1.49%
- Veröffentlicht 23.10.2023 15:15:09
- Zuletzt bearbeitet 21.11.2024 08:22:24
An issue in OpenImageIO oiio v.2.4.12.0 allows a remote attacker to execute arbitrary code and cause a denial of service via the read_rle_image function of file bifs/unquantize.c
CVE-2023-36183
- EPSS 0.08%
- Veröffentlicht 03.07.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 08:09:23
Buffer Overflow vulnerability in OpenImageIO v.2.4.12.0 and before allows a remote to execute arbitrary code and obtain sensitive information via a crafted file to the readimg function.
CVE-2023-24473
- EPSS 0.1%
- Veröffentlicht 30.03.2023 16:15:07
- Zuletzt bearbeitet 21.11.2024 07:47:55
An information disclosure vulnerability exists in the TGAInput::read_tga2_header functionality of OpenImageIO Project OpenImageIO v2.4.7.1. A specially crafted targa file can lead to a disclosure of sensitive information. An attacker can provide a ma...