CVE-2026-59956
- EPSS 0.2%
- Veröffentlicht 18.09.2026 15:33:22
- Zuletzt bearbeitet 29.09.2026 18:56:57
OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.20.0, 3.1.15.0, and 3.2.0.3-beta1, An uncompressed 16-bit iff image with a z-buffer makes iffinput::readimg...
CVE-2026-50291
- EPSS -
- Veröffentlicht 17.09.2026 21:33:44
- Zuletzt bearbeitet 29.09.2026 18:57:32
OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to versions 3.0.16.0 and 3.1.11.0, processing a crafted BMP file through oiiotool or an application linked to Open...
CVE-2026-43903
- EPSS 0.13%
- Veröffentlicht 14.05.2026 19:10:21
- Zuletzt bearbeitet 15.05.2026 19:42:45
OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, sgiinput.cpp:265,274 use OIIO_DASSERT for bounds checking in the RLE decode loop. In rel...
CVE-2026-43904
- EPSS 0.17%
- Veröffentlicht 14.05.2026 19:09:52
- Zuletzt bearbeitet 16.05.2026 01:16:16
OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, softimageinput.cpp:469 (mixed RLE) and :345 (pure RLE) do not clamp the run length to re...
CVE-2026-43905
- EPSS 0.17%
- Veröffentlicht 14.05.2026 19:09:18
- Zuletzt bearbeitet 15.05.2026 19:43:11
OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, jpeg2000input.cpp:395 computes buffer size as const int bufsize = w * h * ch * buffer_bp...
CVE-2026-43996
- EPSS 0.18%
- Veröffentlicht 14.05.2026 19:08:26
- Zuletzt bearbeitet 16.05.2026 01:16:16
OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, the bounds check in TGAInput::decode_pixel computes k + palbytespp as unsigned 32-bit ar...
CVE-2026-43907
- EPSS 0.37%
- Veröffentlicht 14.05.2026 19:07:05
- Zuletzt bearbeitet 15.05.2026 19:43:22
OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, a signed integer overflow in QueryRGBBufferSizeInternal() in DPXColorConverter.cpp leads...
CVE-2026-43908
- EPSS 0.37%
- Veröffentlicht 14.05.2026 19:01:21
- Zuletzt bearbeitet 15.05.2026 18:07:55
OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, a signed 32-bit integer overflow in the pixel-loop index expression i * 3 inside Convert...
CVE-2026-43909
- EPSS 0.37%
- Veröffentlicht 14.05.2026 19:00:20
- Zuletzt bearbeitet 15.05.2026 18:07:20
OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, a signed 32-bit integer overflow in the loop index expression i * 4 inside SwapRGBABytes...
CVE-2026-43906
- EPSS 0.19%
- Veröffentlicht 14.05.2026 18:54:17
- Zuletzt bearbeitet 15.05.2026 19:42:27
OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, a heap-based buffer overflow in the HEIF decoder of OpenImageIO allows out-of-bounds wri...