4.3
CVSSv2

CVE-2017-9114

Published: 21/05/2017 Updated: 30/08/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

In OpenEXR 2.2.0, an invalid read of size 1 in the refill function in ImfFastHuf.cpp could cause the application to crash.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

openexr openexr 2.2.0

Vendor Advisories

Debian Bug report logs - #864078 openexr: CVE-2017-9110 CVE-2017-9112 CVE-2017-9116 Package: src:openexr; Maintainer for src:openexr is Debian PhotoTools Maintainers <pkg-phototools-devel@listsaliothdebianorg>; Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Sun, 4 Jun 2017 06:48:02 UTC Severity: grave Tag ...
Debian Bug report logs - #873885 openexr: CVE-2017-9111 CVE-2017-9113 CVE-2017-9114 CVE-2017-9115 Package: src:openexr; Maintainer for src:openexr is Debian PhotoTools Maintainers <pkg-phototools-devel@listsaliothdebianorg>; Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Sun, 4 Jun 2017 06:48:02 UTC Sever ...
Multiple security issues were found in the OpenEXR image library, which could result in denial of service and potentially the execution of arbitrary code when processing malformed EXR image files For the stable distribution (buster), these problems have been fixed in version 221-41+deb10u1 We recommend that you upgrade your openexr packages F ...
In OpenEXR 220, an invalid read of size 1 in the refill function in ImfFastHufcpp could cause the application to crash ...