« List of all CVEs

CVE-2021-20300

Published: 3/4/2022 Last updated: 8/3/2024 Reserved: 12/17/2020

A flaw was found in OpenEXR's hufUncompress functionality in OpenEXR/IlmImf/ImfHuf.cpp. This flaw allows an attacker who can submit a crafted file that is processed by OpenEXR, to trigger an integer overflow. The highest threat from this vulnerability is to system availability.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Opam packages affected (1)

conf-openimageio

Products affected (1)

Product Vendor Version
OpenEXR n/a 10 Version 1803 for x64-based Systems

References (8)