Lucene search

K
osvGoogleOSV:CVE-2021-3474
HistoryMar 30, 2021 - 6:15 p.m.

CVE-2021-3474

2021-03-3018:15:17
Google
osv.dev
11
openexr
shift overflow
fasthufdecoder
application availability

AI Score

6.7

Confidence

Low

EPSS

0.002

Percentile

52.7%

There’s a flaw in OpenEXR in versions before 3.0.0-beta. A crafted input file that is processed by OpenEXR could cause a shift overflow in the FastHufDecoder, potentially leading to problems with application availability.