Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 9

Количество 9

ubuntu логотип

CVE-2026-42216

3 месяца назад

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, IDManifest::init() reconstructs strings from a prefix-compressed representation. If the previous string is longer than 255 bytes, the next string is expected to begin with a 2-byte prefix length. The code reads stringList[i][0] and stringList[i][1] without checking that the current string has at least two bytes. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 9.1
EPSS: Низкий
redhat логотип

CVE-2026-42216

3 месяца назад

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, IDManifest::init() reconstructs strings from a prefix-compressed representation. If the previous string is longer than 255 bytes, the next string is expected to begin with a 2-byte prefix length. The code reads stringList[i][0] and stringList[i][1] without checking that the current string has at least two bytes. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2026-42216

3 месяца назад

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, IDManifest::init() reconstructs strings from a prefix-compressed representation. If the previous string is longer than 255 bytes, the next string is expected to begin with a 2-byte prefix length. The code reads stringList[i][0] and stringList[i][1] without checking that the current string has at least two bytes. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 9.1
EPSS: Низкий
debian логотип

CVE-2026-42216

3 месяца назад

OpenEXR provides the specification and reference implementation of the ...

CVSS3: 9.1
EPSS: Низкий
rocky логотип

RLSA-2026:38499

17 дней назад

Important: openexr security update

EPSS: Низкий
rocky логотип

RLSA-2026:38498

17 дней назад

Important: openexr security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-38499

16 дней назад

ELSA-2026-38499: openexr security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-38498

19 дней назад

ELSA-2026-38498: openexr security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20755-1

3 месяца назад

Security update for openexr

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-42216

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, IDManifest::init() reconstructs strings from a prefix-compressed representation. If the previous string is longer than 255 bytes, the next string is expected to begin with a 2-byte prefix length. The code reads stringList[i][0] and stringList[i][1] without checking that the current string has at least two bytes. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 9.1
0%
Низкий
3 месяца назад
redhat логотип
CVE-2026-42216

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, IDManifest::init() reconstructs strings from a prefix-compressed representation. If the previous string is longer than 255 bytes, the next string is expected to begin with a 2-byte prefix length. The code reads stringList[i][0] and stringList[i][1] without checking that the current string has at least two bytes. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 8.1
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-42216

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, IDManifest::init() reconstructs strings from a prefix-compressed representation. If the previous string is longer than 255 bytes, the next string is expected to begin with a 2-byte prefix length. The code reads stringList[i][0] and stringList[i][1] without checking that the current string has at least two bytes. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 9.1
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-42216

OpenEXR provides the specification and reference implementation of the ...

CVSS3: 9.1
0%
Низкий
3 месяца назад
rocky логотип
RLSA-2026:38499

Important: openexr security update

17 дней назад
rocky логотип
RLSA-2026:38498

Important: openexr security update

17 дней назад
oracle-oval логотип
ELSA-2026-38499

ELSA-2026-38499: openexr security update (IMPORTANT)

16 дней назад
oracle-oval логотип
ELSA-2026-38498

ELSA-2026-38498: openexr security update (IMPORTANT)

19 дней назад
suse-cvrf логотип
openSUSE-SU-2026:20755-1

Security update for openexr

3 месяца назад

Уязвимостей на страницу

exploitDog - Комплексное решение для обнаружения, оценки и устранения уязвимостей.