Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 15

Количество 15

rocky логотип

RLSA-2026:38499

2 месяца назад

Important: openexr security update

EPSS: Низкий
rocky логотип

RLSA-2026:38498

2 месяца назад

Important: openexr security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-38499

2 месяца назад

ELSA-2026-38499: openexr security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-38498

2 месяца назад

ELSA-2026-38498: openexr security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20755-1

4 месяца назад

Security update for openexr

EPSS: Низкий
ubuntu логотип

CVE-2026-42216

4 месяца назад

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, IDManifest::init() reconstructs strings from a prefix-compressed representation. If the previous string is longer than 255 bytes, the next string is expected to begin with a 2-byte prefix length. The code reads stringList[i][0] and stringList[i][1] without checking that the current string has at least two bytes. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 9.1
EPSS: Низкий
redhat логотип

CVE-2026-42216

4 месяца назад

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, IDManifest::init() reconstructs strings from a prefix-compressed representation. If the previous string is longer than 255 bytes, the next string is expected to begin with a 2-byte prefix length. The code reads stringList[i][0] and stringList[i][1] without checking that the current string has at least two bytes. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2026-42216

4 месяца назад

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, IDManifest::init() reconstructs strings from a prefix-compressed representation. If the previous string is longer than 255 bytes, the next string is expected to begin with a 2-byte prefix length. The code reads stringList[i][0] and stringList[i][1] without checking that the current string has at least two bytes. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 9.1
EPSS: Низкий
debian логотип

CVE-2026-42216

4 месяца назад

OpenEXR provides the specification and reference implementation of the ...

CVSS3: 9.1
EPSS: Низкий
ubuntu логотип

CVE-2026-41142

4 месяца назад

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, there is an integer overflow in ImageChannel::resize that leads to heap OOB write via OpenEXRUtil public API. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2026-41142

4 месяца назад

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, there is an integer overflow in ImageChannel::resize that leads to heap OOB write via OpenEXRUtil public API. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2026-41142

4 месяца назад

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, there is an integer overflow in ImageChannel::resize that leads to heap OOB write via OpenEXRUtil public API. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2026-41142

4 месяца назад

OpenEXR provides the specification and reference implementation of the ...

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2114-1

4 месяца назад

Security update for openexr

EPSS: Низкий
fstec логотип

BDU:2026-12852

5 месяцев назад

Уязвимость программного обеспечения для хранения изображений с широкими динамическими диапазоном яркости OpenEXR, связанная с целочисленным переполнением, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2026:38499

Important: openexr security update

2 месяца назад
rocky логотип
RLSA-2026:38498

Important: openexr security update

2 месяца назад
oracle-oval логотип
ELSA-2026-38499

ELSA-2026-38499: openexr security update (IMPORTANT)

2 месяца назад
oracle-oval логотип
ELSA-2026-38498

ELSA-2026-38498: openexr security update (IMPORTANT)

2 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20755-1

Security update for openexr

4 месяца назад
ubuntu логотип
CVE-2026-42216

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, IDManifest::init() reconstructs strings from a prefix-compressed representation. If the previous string is longer than 255 bytes, the next string is expected to begin with a 2-byte prefix length. The code reads stringList[i][0] and stringList[i][1] without checking that the current string has at least two bytes. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 9.1
0%
Низкий
4 месяца назад
redhat логотип
CVE-2026-42216

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, IDManifest::init() reconstructs strings from a prefix-compressed representation. If the previous string is longer than 255 bytes, the next string is expected to begin with a 2-byte prefix length. The code reads stringList[i][0] and stringList[i][1] without checking that the current string has at least two bytes. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 8.1
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-42216

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, IDManifest::init() reconstructs strings from a prefix-compressed representation. If the previous string is longer than 255 bytes, the next string is expected to begin with a 2-byte prefix length. The code reads stringList[i][0] and stringList[i][1] without checking that the current string has at least two bytes. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 9.1
0%
Низкий
4 месяца назад
debian логотип
CVE-2026-42216

OpenEXR provides the specification and reference implementation of the ...

CVSS3: 9.1
0%
Низкий
4 месяца назад
ubuntu логотип
CVE-2026-41142

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, there is an integer overflow in ImageChannel::resize that leads to heap OOB write via OpenEXRUtil public API. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 8.8
0%
Низкий
4 месяца назад
redhat логотип
CVE-2026-41142

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, there is an integer overflow in ImageChannel::resize that leads to heap OOB write via OpenEXRUtil public API. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 8.8
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-41142

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From versions 3.0.0 to before 3.2.9, 3.3.0 to before 3.3.11, and 3.4.0 to before 3.4.11, there is an integer overflow in ImageChannel::resize that leads to heap OOB write via OpenEXRUtil public API. This issue has been patched in versions 3.2.9, 3.3.11, and 3.4.11.

CVSS3: 8.8
0%
Низкий
4 месяца назад
debian логотип
CVE-2026-41142

OpenEXR provides the specification and reference implementation of the ...

CVSS3: 8.8
0%
Низкий
4 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2114-1

Security update for openexr

0%
Низкий
4 месяца назад
fstec логотип
BDU:2026-12852

Уязвимость программного обеспечения для хранения изображений с широкими динамическими диапазоном яркости OpenEXR, связанная с целочисленным переполнением, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 8.8
0%
Низкий
5 месяцев назад

Уязвимостей на страницу