8.8
CVSSv3

CVE-2018-18444

Published: 17/10/2018 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

It exists that OpenEXR incorrectly handled certain malformed EXR image files. If a user were tricked into opening a crafted EXR image file, a remote attacker could cause a denial of service, or possibly execute arbitrary code. This issue only affected Ubuntu 16.04 LTS. (CVE-2017-12596)

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ilm openexr 2.3.0

Vendor Advisories

Several security issues were fixed in OpenEXR ...
Several security issues were fixed in OpenEXR ...
makeMultiViewcpp in exrmultiview in OpenEXR 230 has an out-of-bounds write, leading to an assertion failure or possibly unspecified other impact ...