Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2023-5841

Опубликовано: 01 фев. 2024
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 9.1

Описание

Due to a failure in validating the number of scanline samples of a OpenEXR file containing deep scanline data, Academy Software Foundation OpenEX image parsing library version 3.2.1 and prior is susceptible to a heap-based buffer overflow vulnerability. This issue was resolved as of versions v3.2.2 and v3.1.12 of the affected library.

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

not-affected

3.1.13-2build1
esm-apps/focal

not-affected

code not present
esm-apps/jammy

not-affected

code not present
esm-apps/noble

needed

esm-apps/resolute

not-affected

3.1.13-2build1
esm-infra-legacy/xenial

not-affected

code not present
esm-infra/bionic

not-affected

code not present
esm-infra/xenial

not-affected

code not present
focal

not-affected

code not present

Показывать по

EPSS

Процентиль: 67%
0.01258
Низкий

9.1 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.1
redhat
больше 2 лет назад

Due to a failure in validating the number of scanline samples of a OpenEXR file containing deep scanline data, Academy Software Foundation OpenEX image parsing library version 3.2.1 and prior is susceptible to a heap-based buffer overflow vulnerability. This issue was resolved as of versions v3.2.2 and v3.1.12 of the affected library.

CVSS3: 9.1
nvd
больше 2 лет назад

Due to a failure in validating the number of scanline samples of a OpenEXR file containing deep scanline data, Academy Software Foundation OpenEX image parsing library version 3.2.1 and prior is susceptible to a heap-based buffer overflow vulnerability. This issue was resolved as of versions v3.2.2 and v3.1.12 of the affected library.

CVSS3: 9.1
debian
больше 2 лет назад

Due to a failure in validating the number of scanline samples of a Ope ...

rocky
больше 1 года назад

Important: openexr security update

rocky
больше 1 года назад

Important: openexr security update

EPSS

Процентиль: 67%
0.01258
Низкий

9.1 Critical

CVSS3