CVE-2020-11764
- EPSS 0.81%
- Veröffentlicht 14.04.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:58:33
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds write in copyIntoFrameBuffer in ImfMisc.cpp.
CVE-2020-11765
- EPSS 0.58%
- Veröffentlicht 14.04.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:58:33
An issue was discovered in OpenEXR before 2.4.1. There is an off-by-one error in use of the ImfXdr.h read function by DwaCompressor::Classifier::Classifier, leading to an out-of-bounds read.
CVE-2017-14988
- EPSS 0.4%
- Veröffentlicht 03.10.2017 01:29:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
Header::readfrom in IlmImf/ImfHeader.cpp in OpenEXR 2.2.0 allows remote attackers to cause a denial of service (excessive memory allocation) via a crafted file that is accessed with the ImfOpenInputFile function in IlmImf/ImfCRgbaFile.cpp. NOTE: The ...
CVE-2017-12596
- EPSS 0.55%
- Veröffentlicht 07.08.2017 01:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In OpenEXR 2.2.0, a crafted image causes a heap-based buffer over-read in the hufDecode function in IlmImf/ImfHuf.cpp during exrmaketiled execution; it may result in denial of service or possibly unspecified other impact.
CVE-2017-9116
- EPSS 0.25%
- Veröffentlicht 21.05.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In OpenEXR 2.2.0, an invalid read of size 1 in the uncompress function in ImfZip.cpp could cause the application to crash.
CVE-2017-9115
- EPSS 3.28%
- Veröffentlicht 21.05.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In OpenEXR 2.2.0, an invalid write of size 2 in the = operator function in half.h could cause the application to crash or execute arbitrary code.
CVE-2017-9114
- EPSS 0.34%
- Veröffentlicht 21.05.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In OpenEXR 2.2.0, an invalid read of size 1 in the refill function in ImfFastHuf.cpp could cause the application to crash.
CVE-2017-9113
- EPSS 3.31%
- Veröffentlicht 21.05.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In OpenEXR 2.2.0, an invalid write of size 1 in the bufferedReadPixels function in ImfInputFile.cpp could cause the application to crash or execute arbitrary code.
CVE-2017-9112
- EPSS 0.46%
- Veröffentlicht 21.05.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In OpenEXR 2.2.0, an invalid read of size 1 in the getBits function in ImfHuf.cpp could cause the application to crash.
CVE-2017-9111
- EPSS 1.89%
- Veröffentlicht 21.05.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In OpenEXR 2.2.0, an invalid write of size 8 in the storeSSE function in ImfOptimizedPixelReading.h could cause the application to crash or execute arbitrary code.