Vulnerabilities > CVE-2022-41977 - Unspecified vulnerability in Openimageio 2.3.19.0
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
LOW Integrity impact
NONE Availability impact
NONE Summary
An out of bounds read vulnerability exists in the way OpenImageIO version v2.3.19.0 processes string fields in TIFF image files. A specially-crafted TIFF file can lead to information disclosure. An attacker can provide a malicious file to trigger this vulnerability.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- https://security.gentoo.org/glsa/202305-33
- https://security.gentoo.org/glsa/202305-33
- https://talosintelligence.com/vulnerability_reports/TALOS-2022-1627
- https://talosintelligence.com/vulnerability_reports/TALOS-2022-1627
- https://www.debian.org/security/2023/dsa-5384
- https://www.debian.org/security/2023/dsa-5384