Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-19852
HistoryAug 07, 2021 - 12:00 a.m.

Industrial Light and Magic OpenEXR Buffer Overflow Vulnerability (CNVD-2022-19852)

2021-08-0700:00:00
China National Vulnerability Database
www.cnvd.org.cn
21
openexr
industrial light and magic
buffer overflow
vulnerability
hdr images
heap buffer overflow
attackers
malicious code
execution
cnvd-2022-19852

EPSS

0.001

Percentile

39.7%

OpenEXR is an image file format for high dynamic range (HDR) images from Industrial Light and Magic (LIM), Inc. A buffer overflow vulnerability exists in Industrial Light and Magic OpenEXR, which stems from the product’s Imf_2_5:: copyIntoFrameBuffer contains a heap buffer overflow, which can be exploited by attackers to execute malicious code.