Описание
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, there is an integer overflow in ImageChannel::resize that leads to heap OOB write via OpenEXRUtil public API. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.
A flaw was found in OpenEXR, an image storage format library for the motion picture industry. An integer overflow vulnerability exists in the ImageChannel::resize function, which can be triggered when processing a specially crafted OpenEXR image file through the OpenEXRUtil public API. This can lead to a heap out-of-bounds write, potentially allowing a remote attacker to achieve arbitrary code execution, disclose sensitive information, or cause a denial of service.
Отчет
This is an Important vulnerability in OpenEXR, which could lead to arbitrary code execution, sensitive information disclosure, or denial of service. The flaw, an integer overflow in the ImageChannel::resize function, is triggered when an application processes a specially crafted OpenEXR image file. Successful exploitation requires user interaction, such as opening a malicious file.
Меры по смягчению последствий
To mitigate this vulnerability, users should avoid processing or opening OpenEXR image files from untrusted or unknown sources. Restricting the input of OpenEXR files to only trusted origins can reduce the risk of exploitation.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 6 | OpenEXR | Not affected | ||
| Red Hat Enterprise Linux 7 | OpenEXR | Not affected | ||
| Red Hat Enterprise Linux 8 | OpenEXR | Not affected | ||
| Red Hat Enterprise Linux 10 | openexr | Fixed | RHSA-2026:38499 | 13.07.2026 |
| Red Hat Enterprise Linux 10.0 Extended Update Support | openexr | Fixed | RHSA-2026:39024 | 13.07.2026 |
| Red Hat Enterprise Linux 9 | openexr | Fixed | RHSA-2026:38498 | 13.07.2026 |
| Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | openexr | Fixed | RHSA-2026:39027 | 13.07.2026 |
| Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions | openexr | Fixed | RHSA-2026:39026 | 13.07.2026 |
| Red Hat Enterprise Linux 9.6 Extended Update Support | openexr | Fixed | RHSA-2026:39025 | 13.07.2026 |
Показывать по
Ссылки на источники
Дополнительная информация
Статус:
EPSS
8.8 High
CVSS3
Связанные уязвимости
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, there is an integer overflow in ImageChannel::resize that leads to heap OOB write via OpenEXRUtil public API. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, there is an integer overflow in ImageChannel::resize that leads to heap OOB write via OpenEXRUtil public API. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.
OpenEXR provides the specification and reference implementation of the ...
EPSS
8.8 High
CVSS3