CVE-2025-64183
- EPSS 0.04%
- Veröffentlicht 10.11.2025 21:29:54
- Zuletzt bearbeitet 08.12.2025 16:00:58
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In versions 3.2.0 through 3.2.4, 3.3.0 through 3.3.5, and 3.4.0 through 3.4.2, there is a use-after-free ...
CVE-2025-64182
- EPSS 0.01%
- Veröffentlicht 10.11.2025 21:27:21
- Zuletzt bearbeitet 08.12.2025 15:37:24
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In versions 3.2.0 through 3.2.4, 3.3.0 through 3.3.5, and 3.4.0 through 3.4.2, a memory safety bug in the...
CVE-2025-64181
- EPSS 0.03%
- Veröffentlicht 10.11.2025 21:23:04
- Zuletzt bearbeitet 08.12.2025 15:59:58
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In versions 3.3.0 through 3.3.5 and 3.4.0 through 3.4.2, while fuzzing `openexr_exrcheck_fuzzer`, Valgrin...
CVE-2025-48074
- EPSS 0.05%
- Veröffentlicht 01.08.2025 16:32:54
- Zuletzt bearbeitet 13.08.2025 19:18:13
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In version 3.3.2, applications trust unvalidated dataWindow size values from file headers, which can lead...
CVE-2025-48073
- EPSS 0.05%
- Veröffentlicht 31.07.2025 20:25:51
- Zuletzt bearbeitet 13.08.2025 19:06:51
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In version 3.3.2, when reading a deep scanline image with a large sample count in reduceMemory mode, it i...
CVE-2025-48072
- EPSS 0.08%
- Veröffentlicht 31.07.2025 20:18:40
- Zuletzt bearbeitet 13.08.2025 20:23:43
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. Version 3.3.2 is vulnerable to a heap-based buffer overflow during a read operation due to bad pointer ma...
CVE-2025-48071
- EPSS 0.03%
- Veröffentlicht 31.07.2025 20:13:14
- Zuletzt bearbeitet 13.08.2025 19:18:51
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In versions 3.3.2 through 3.3.0, there is a heap-based buffer overflow during a write operation when deco...
CVE-2024-31047
- EPSS 0.02%
- Veröffentlicht 08.04.2024 23:15:08
- Zuletzt bearbeitet 13.08.2025 15:01:25
An issue in Academy Software Foundation openexr v.3.2.3 and before allows a local attacker to cause a denial of service (DoS) via the convert function of exrmultipart.cpp.
CVE-2023-5841
- EPSS 0.8%
- Veröffentlicht 01.02.2024 19:15:08
- Zuletzt bearbeitet 04.11.2025 17:15:43
Due to a failure in validating the number of scanline samples of a OpenEXR file containing deep scanline data, Academy Software Foundation OpenEX image parsing library version 3.2.1 and prior is susceptible to a heap-based buffer overflow vulnerabili...
CVE-2021-20304
- EPSS 0.14%
- Veröffentlicht 23.08.2022 16:15:09
- Zuletzt bearbeitet 21.11.2024 05:46:19
A flaw was found in OpenEXR's hufDecode functionality. This flaw allows an attacker who can pass a crafted file to be processed by OpenEXR, to trigger an undefined right shift error. The highest threat from this vulnerability is to system availabilit...