Lucene search

K
alpinelinuxAlpine Linux Development TeamALPINE:CVE-2021-3605
HistoryAug 25, 2021 - 7:15 p.m.

CVE-2021-3605

2021-08-2519:15:00
Alpine Linux Development Team
security.alpinelinux.org
16
openexr
rleuncompress
out-of-bounds
read
flaw
application availability

EPSS

0.001

Percentile

31.7%

There’s a flaw in OpenEXR’s rleUncompress functionality in versions prior to 3.0.5. An attacker who is able to submit a crafted file to an application linked with OpenEXR could cause an out-of-bounds read. The greatest risk from this flaw is to application availability.

OSVersionArchitecturePackageVersionFilename
Alpine3.14-communitynoarchopenexr= 2.5.5-r3UNKNOWN