Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xwhj-x2g6-527m

Опубликовано: 23 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

An information disclosure vulnerability exists in the IFFOutput channel interleaving functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafted ImageOutput Object can lead to leaked heap data. An attacker can provide malicious input to trigger this vulnerability.

An information disclosure vulnerability exists in the IFFOutput channel interleaving functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafted ImageOutput Object can lead to leaked heap data. An attacker can provide malicious input to trigger this vulnerability.

EPSS

Процентиль: 48%
0.00247
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 5.9
ubuntu
около 3 лет назад

An information disclosure vulnerability exists in the IFFOutput channel interleaving functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafted ImageOutput Object can lead to leaked heap data. An attacker can provide malicious input to trigger this vulnerability.

CVSS3: 5.9
nvd
около 3 лет назад

An information disclosure vulnerability exists in the IFFOutput channel interleaving functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafted ImageOutput Object can lead to leaked heap data. An attacker can provide malicious input to trigger this vulnerability.

CVSS3: 5.9
debian
около 3 лет назад

An information disclosure vulnerability exists in the IFFOutput channe ...

CVSS3: 5.9
fstec
около 3 лет назад

Уязвимость компонента iffoutput библиотеки обработки изображений OpenImageIO, позволяющая нарушителю получить доступ к конфиденциальным данным

EPSS

Процентиль: 48%
0.00247
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-125