Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36967
HistorySep 07, 2022 - 10:08 a.m.

Buffer Overflow

2022-09-0710:08:50
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11
libtinyexr.so buffer overflow decompressrle function heap-based vulnerability memory corruption

EPSS

0.001

Percentile

34.8%

libtinyexr.so is vulnerable to heap-based buffer overflow. The vulnerability exist in the DecompressRle function in tinyexr.h due to lack of address validation, allowing an attacker to cause memory corruption.

EPSS

0.001

Percentile

34.8%