Lucene search

K
osvGoogleOSV:CVE-2021-45942
HistoryJan 01, 2022 - 1:15 a.m.

CVE-2021-45942

2022-01-0101:15:09
Google
osv.dev
15
openexr 3.1.x
heap-based buffer overflow
linecompositetask
buffer overflow
software

AI Score

7.1

Confidence

Low

EPSS

0.001

Percentile

43.1%

OpenEXR 3.1.x before 3.1.4 has a heap-based buffer overflow in Imf_3_1::LineCompositeTask::execute (called from IlmThread_3_1::NullThreadPoolProvider::addTask and IlmThread_3_1::ThreadPool::addGlobalTask). NOTE: db217f2 may be inapplicable.

References