Lucene search

K
osvGoogleOSV:CVE-2021-20300
HistoryMar 04, 2022 - 6:15 p.m.

CVE-2021-20300

2022-03-0418:15:00
Google
osv.dev
8
openexr
hufuncompress
integer overflow

AI Score

6.3

Confidence

High

EPSS

0.001

Percentile

39.7%

A flaw was found in OpenEXR’s hufUncompress functionality in OpenEXR/IlmImf/ImfHuf.cpp. This flaw allows an attacker who can submit a crafted file that is processed by OpenEXR, to trigger an integer overflow. The highest threat from this vulnerability is to system availability.

AI Score

6.3

Confidence

High

EPSS

0.001

Percentile

39.7%