Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-43594

Опубликовано: 22 дек. 2022
Источник: debian

Описание

Multiple denial of service vulnerabilities exist in the image output closing functionality of OpenImageIO Project OpenImageIO v2.4.4.2. Specially crafted ImageOutput Objects can lead to multiple null pointer dereferences. An attacker can provide malicious multiple inputs to trigger these vulnerabilities.This vulnerability applies to writing .bmp files.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
openimageiofixed2.4.7.1+dfsg-2package

Примечания

  • https://talosintelligence.com/vulnerability_reports/TALOS-2022-1653

  • https://github.com/OpenImageIO/oiio/pull/3673

Связанные уязвимости

CVSS3: 5.9
ubuntu
около 3 лет назад

Multiple denial of service vulnerabilities exist in the image output closing functionality of OpenImageIO Project OpenImageIO v2.4.4.2. Specially crafted ImageOutput Objects can lead to multiple null pointer dereferences. An attacker can provide malicious multiple inputs to trigger these vulnerabilities.This vulnerability applies to writing .bmp files.

CVSS3: 5.9
nvd
около 3 лет назад

Multiple denial of service vulnerabilities exist in the image output closing functionality of OpenImageIO Project OpenImageIO v2.4.4.2. Specially crafted ImageOutput Objects can lead to multiple null pointer dereferences. An attacker can provide malicious multiple inputs to trigger these vulnerabilities.This vulnerability applies to writing .bmp files.

CVSS3: 5.9
github
около 3 лет назад

Multiple denial of service vulnerabilities exist in the image output closing functionality of OpenImageIO Project OpenImageIO v2.4.4.2. Specially crafted ImageOutput Objects can lead to multiple null pointer dereferences. An attacker can provide malicious multiple inputs to trigger these vulnerabilities.This vulnerability applies to writing .bmp files.

CVSS3: 5.9
fstec
около 3 лет назад

Уязвимость библиотеки обработки изображений OpenImageIO, позволяющая нарушителю вызвать отказ в обслуживании