Vulnerabilities > CVE-2022-38529 - Out-of-bounds Write vulnerability in Tinyexr Project Tinyexr 20220628

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
tinyexr-project
CWE-787

Summary

tinyexr commit 0647fb3 was discovered to contain a heap-buffer overflow via the component rleUncompress.

Vulnerable Configurations

Part Description Count
Application
Tinyexr_Project
1

Common Weakness Enumeration (CWE)