Lucene search

K
osvGoogleOSV:CVE-2021-3605
HistoryAug 25, 2021 - 7:15 p.m.

CVE-2021-3605

2021-08-2519:15:14
Google
osv.dev
10
openexr
rleuncompress
out-of-bounds
application availability
vulnerability

AI Score

6.3

Confidence

Low

EPSS

0.001

Percentile

31.7%

There’s a flaw in OpenEXR’s rleUncompress functionality in versions prior to 3.0.5. An attacker who is able to submit a crafted file to an application linked with OpenEXR could cause an out-of-bounds read. The greatest risk from this flaw is to application availability.