Lucene search

K
osvGoogleOSV:USN-4996-2
HistoryJun 22, 2021 - 11:46 a.m.

openexr vulnerabilities

2021-06-2211:46:27
Google
osv.dev
14
openexr
vulnerabilities
ubuntu 16.04 esm
denial of service
arbitrary code
image files

AI Score

6.3

Confidence

High

EPSS

0.001

Percentile

48.6%

USN-4996-1 fixed several vulnerabilities in OpenEXR. This update provides
the corresponding update for Ubuntu 16.04 ESM.

Original advisory details:

It was discovered that OpenEXR incorrectly handled certain malformed EXR
image files. If a user were tricked into opening a crafted EXR image file,
a remote attacker could cause a denial of service, or possibly execute
arbitrary code.