Vulnerabilities > Openexr > High

DATE CVE VULNERABILITY TITLE RISK
2022-08-23 CVE-2021-20298 Out-of-bounds Write vulnerability in multiple products
A flaw was found in OpenEXR's B44Compressor.
network
low complexity
openexr debian CWE-787
7.5
2022-08-23 CVE-2021-20304 Unspecified vulnerability in Openexr
A flaw was found in OpenEXR's hufDecode functionality.
network
low complexity
openexr
7.5
2022-03-16 CVE-2021-20299 A flaw was found in OpenEXR's Multipart input file functionality.
network
low complexity
openexr debian
7.5
2021-06-08 CVE-2021-23169 A heap-buffer overflow was found in the copyIntoFrameBuffer function of OpenEXR in versions before 3.0.1.
network
low complexity
openexr fedoraproject
8.8
2017-08-07 CVE-2017-12596 Out-of-bounds Read vulnerability in Openexr 2.2.0
In OpenEXR 2.2.0, a crafted image causes a heap-based buffer over-read in the hufDecode function in IlmImf/ImfHuf.cpp during exrmaketiled execution; it may result in denial of service or possibly unspecified other impact.
local
low complexity
openexr CWE-125
7.8
2017-05-21 CVE-2017-9115 Unspecified vulnerability in Openexr 2.2.0
In OpenEXR 2.2.0, an invalid write of size 2 in the = operator function in half.h could cause the application to crash or execute arbitrary code.
network
low complexity
openexr
8.8
2017-05-21 CVE-2017-9113 Unspecified vulnerability in Openexr 2.2.0
In OpenEXR 2.2.0, an invalid write of size 1 in the bufferedReadPixels function in ImfInputFile.cpp could cause the application to crash or execute arbitrary code.
network
low complexity
openexr
8.8
2017-05-21 CVE-2017-9111 Unspecified vulnerability in Openexr 2.2.0
In OpenEXR 2.2.0, an invalid write of size 8 in the storeSSE function in ImfOptimizedPixelReading.h could cause the application to crash or execute arbitrary code.
network
low complexity
openexr
8.8