CVE-2021-3474
- EPSS 0.11%
- Veröffentlicht 30.03.2021 18:15:17
- Zuletzt bearbeitet 21.11.2024 06:21:37
There's a flaw in OpenEXR in versions before 3.0.0-beta. A crafted input file that is processed by OpenEXR could cause a shift overflow in the FastHufDecoder, potentially leading to problems with application availability.
CVE-2020-16589
- EPSS 0.13%
- Veröffentlicht 09.12.2020 21:15:14
- Zuletzt bearbeitet 21.11.2024 05:07:10
A head-based buffer overflow exists in Academy Software Foundation OpenEXR 2.3.0 in writeTileData in ImfTiledOutputFile.cpp that can cause a denial of service via a crafted EXR file.
CVE-2020-16588
- EPSS 0.18%
- Veröffentlicht 09.12.2020 21:15:14
- Zuletzt bearbeitet 21.11.2024 05:07:10
A Null Pointer Deference issue exists in Academy Software Foundation OpenEXR 2.3.0 in generatePreview in makePreview.cpp that can cause a denial of service via a crafted EXR file.
CVE-2020-16587
- EPSS 0.15%
- Veröffentlicht 09.12.2020 21:15:14
- Zuletzt bearbeitet 21.11.2024 05:07:09
A heap-based buffer overflow vulnerability exists in Academy Software Foundation OpenEXR 2.3.0 in chunkOffsetReconstruction in ImfMultiPartInputFile.cpp that can cause a denial of service via a crafted EXR file.
CVE-2020-15306
- EPSS 0.13%
- Veröffentlicht 26.06.2020 01:15:10
- Zuletzt bearbeitet 21.11.2024 05:05:17
An issue was discovered in OpenEXR before v2.5.2. Invalid chunkCount attributes could cause a heap buffer overflow in getChunkOffsetTableSize() in IlmImf/ImfMisc.cpp.
CVE-2020-15305
- EPSS 0.11%
- Veröffentlicht 26.06.2020 01:15:10
- Zuletzt bearbeitet 21.11.2024 05:05:17
An issue was discovered in OpenEXR before 2.5.2. Invalid input could cause a use-after-free in DeepScanLineInputFile::DeepScanLineInputFile() in IlmImf/ImfDeepScanLineInputFile.cpp.
CVE-2020-15304
- EPSS 0.12%
- Veröffentlicht 26.06.2020 01:15:10
- Zuletzt bearbeitet 21.11.2024 05:05:17
An issue was discovered in OpenEXR before 2.5.2. An invalid tiled input file could cause invalid memory access in TiledInputFile::TiledInputFile() in IlmImf/ImfTiledInputFile.cpp, as demonstrated by a NULL pointer dereference.
CVE-2020-11760
- EPSS 0.64%
- Veröffentlicht 14.04.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:58:32
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during RLE uncompression in rleUncompress in ImfRle.cpp.
CVE-2020-11758
- EPSS 0.64%
- Veröffentlicht 14.04.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:58:32
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read in ImfOptimizedPixelReading.h.
CVE-2020-11759
- EPSS 1.06%
- Veröffentlicht 14.04.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:58:32
An issue was discovered in OpenEXR before 2.4.1. Because of integer overflows in CompositeDeepScanLine::Data::handleDeepFrameBuffer and readSampleCountForLineBlock, an attacker can write to an out-of-bounds pointer.