Vulnerability index

Browse CVEs

42 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Openexr MEDIUM 5.5
CVE-2021-26945

An integer overflow leading to a heap-buffer overflow was found in OpenEXR in versions before 3.0.1. An attacker could use this flaw to crash an appl…

Fix: 3.0.1+
Fix from $1,600 2021-06-08
Openexr MEDIUM 5.5
CVE-2017-14988

Header::readfrom in IlmImf/ImfHeader.cpp in OpenEXR 2.2.0 allows remote attackers to cause a denial of service (excessive memory allocation) via a cr…

Mitigation only
Fix from $1,600 2017-10-03
Openexr HIGH 7.8
CVE-2017-12596

In OpenEXR 2.2.0, a crafted image causes a heap-based buffer over-read in the hufDecode function in IlmImf/ImfHuf.cpp during exrmaketiled execution; …

No fix yet
Fix from $1,950 2017-08-07
Openexr HIGH 8.8
CVE-2017-9111

In OpenEXR 2.2.0, an invalid write of size 8 in the storeSSE function in ImfOptimizedPixelReading.h could cause the application to crash or execute a…

Patch available
Fix from $1,950 2017-05-21
Openexr HIGH 8.8
CVE-2017-9113

In OpenEXR 2.2.0, an invalid write of size 1 in the bufferedReadPixels function in ImfInputFile.cpp could cause the application to crash or execute a…

Patch available
Fix from $1,950 2017-05-21
Openexr HIGH 8.8
CVE-2017-9115

In OpenEXR 2.2.0, an invalid write of size 2 in the = operator function in half.h could cause the application to crash or execute arbitrary code.

Patch available
Fix from $1,950 2017-05-21
Openexr MEDIUM 6.5
CVE-2017-9110

In OpenEXR 2.2.0, an invalid read of size 2 in the hufDecode function in ImfHuf.cpp could cause the application to crash.

Patch available
Fix from $1,600 2017-05-21
Openexr MEDIUM 6.5
CVE-2017-9112

In OpenEXR 2.2.0, an invalid read of size 1 in the getBits function in ImfHuf.cpp could cause the application to crash.

Patch available
Fix from $1,600 2017-05-21
Openexr MEDIUM 6.5
CVE-2017-9114

In OpenEXR 2.2.0, an invalid read of size 1 in the refill function in ImfFastHuf.cpp could cause the application to crash.

Patch available
Fix from $1,600 2017-05-21
Openexr MEDIUM 6.5
CVE-2017-9116

In OpenEXR 2.2.0, an invalid read of size 1 in the uncompress function in ImfZip.cpp could cause the application to crash.

Patch available
Fix from $1,600 2017-05-21
Openexr HIGH 7.5
CVE-2009-1720EPSS 6%

Multiple integer overflows in OpenEXR 1.2.2 and 1.6.1 allow context-dependent attackers to cause a denial of service (application crash) or possibly …

Patch available
Fix from $1,950 2009-07-31
Openexr MEDIUM 6.8
CVE-2009-1722

Heap-based buffer overflow in the compression implementation in OpenEXR 1.2.2 allows context-dependent attackers to cause a denial of service (applic…

Patch available
Fix from $1,600 2009-07-31