Lucene search

K
osvGoogleOSV:CVE-2020-16587
HistoryDec 09, 2020 - 9:15 p.m.

CVE-2020-16587

2020-12-0921:15:14
Google
osv.dev
10
academy software foundation
openexr
vulnerability
denial of service
exr file
buffer overflow

AI Score

6.8

Confidence

High

EPSS

0.001

Percentile

30.8%

A heap-based buffer overflow vulnerability exists in Academy Software Foundation OpenEXR 2.3.0 in chunkOffsetReconstruction in ImfMultiPartInputFile.cpp that can cause a denial of service via a crafted EXR file.