Описание
An allocation-size-too-big bug in the component /imagebuf.cpp of OpenImageIO v3.1.0.0dev may cause a Denial of Service (DoS) when the program to requests to allocate too much space.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| openimageio | fixed | 2.5.18.0+dfsg-1 | package | |
| openimageio | no-dsa | bookworm | package | |
| openimageio | ignored | bullseye | package |
Примечания
https://github.com/AcademySoftwareFoundation/OpenImageIO/issues/4553
https://github.com/AcademySoftwareFoundation/OpenImageIO/commit/78927acce09bd4fd7d4d7dccf7b7d4eff4295fcf
https://github.com/AcademySoftwareFoundation/OpenImageIO/commit/f72b3d73d1157c0d25d07b8a1cdb00857788d685 (v2.5.18.0)
EPSS
Связанные уязвимости
An allocation-size-too-big bug in the component /imagebuf.cpp of OpenImageIO v3.1.0.0dev may cause a Denial of Service (DoS) when the program to requests to allocate too much space.
An allocation-size-too-big bug in the component /imagebuf.cpp of OpenImageIO v3.1.0.0dev may cause a Denial of Service (DoS) when the program to requests to allocate too much space.
An allocation-size-too-big bug in the component /imagebuf.cpp of OpenImageIO v3.1.0.0dev may cause a Denial of Service (DoS) when the program to requests to allocate too much space.
Уязвимость компонента imagebuf.cpp библиотеки обработки изображений OpenImageIO, позволяющая нарушителю вызвать отказ в обслуживании
EPSS