Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:31172
HistoryJul 11, 2021 - 12:48 a.m.

Denial Of Service (DoS)

2021-07-1100:48:52
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
18
openexr
stretch
vulnerability
denial of service
flaw
imfdeepscanlineinputfile
out-of-bounds read
application availability
software

EPSS

0.001

Percentile

30.2%

openexr:stretch is vulnerable to denial of service. There’s a flaw in OpenEXR’s ImfDeepScanLineInputFile functionality allows an attacker to submit a crafted file to an application linked with OpenEXR could cause an out-of-bounds read. The greatest risk from this flaw is to application availability.