Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f7fg-v9hq-5m57

Опубликовано: 23 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

Multiple denial of service vulnerabilities exist in the image output closing functionality of OpenImageIO Project OpenImageIO v2.4.4.2. Specially crafted ImageOutput Objects can lead to multiple null pointer dereferences. An attacker can provide malicious multiple inputs to trigger these vulnerabilities.This vulnerability applies to writing .fits files.

Multiple denial of service vulnerabilities exist in the image output closing functionality of OpenImageIO Project OpenImageIO v2.4.4.2. Specially crafted ImageOutput Objects can lead to multiple null pointer dereferences. An attacker can provide malicious multiple inputs to trigger these vulnerabilities.This vulnerability applies to writing .fits files.

EPSS

Процентиль: 40%
0.00184
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 5.9
ubuntu
около 3 лет назад

Multiple denial of service vulnerabilities exist in the image output closing functionality of OpenImageIO Project OpenImageIO v2.4.4.2. Specially crafted ImageOutput Objects can lead to multiple null pointer dereferences. An attacker can provide malicious multiple inputs to trigger these vulnerabilities.This vulnerability applies to writing .fits files.

CVSS3: 5.9
nvd
около 3 лет назад

Multiple denial of service vulnerabilities exist in the image output closing functionality of OpenImageIO Project OpenImageIO v2.4.4.2. Specially crafted ImageOutput Objects can lead to multiple null pointer dereferences. An attacker can provide malicious multiple inputs to trigger these vulnerabilities.This vulnerability applies to writing .fits files.

CVSS3: 5.9
debian
около 3 лет назад

Multiple denial of service vulnerabilities exist in the image output c ...

CVSS3: 5.9
fstec
около 3 лет назад

Уязвимость библиотеки обработки изображений OpenImageIO, связанная с ошибками разыменования указателя, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 40%
0.00184
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-476