Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:29902
HistoryApr 05, 2021 - 7:36 a.m.

Denial Of Service (DoS)

2021-04-0507:36:11
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12
openexr
b44 uncompression
vulnerability
software
availability

EPSS

0.002

Percentile

52.7%

openexr is vulnerable to denial of service. It is due to a flaw found in OpenEXR’s B44 uncompression functionality, allowing to submit a crafted file to OpenEXR to trigger shift overflows which potentially affecting application availability.