Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:31170
HistoryJul 10, 2021 - 6:13 p.m.

Denial Of Service (DoS)

2021-07-1018:13:05
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
18
openexr
dwacompressor
vulnerability
integer overflow
heap-buffer overflow
denial of service
software

EPSS

0.001

Percentile

33.5%

openexr:stretch is vulnerable to denial of service. An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEX. An attacker could use this flaw to crash an application compiled with OpenEXR.