Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Debian: DSA-4755-1 OpenEXR Critical Denial Of Service Risks

debian
Calendar Grey August 29, 2020
Debian Logo
The OpenEXR library, known for high dynamic range imaging, has critical vulnerabilities that may lead to denial of service or arbitrary code execution during file processing
Multiple security issues were found in the OpenEXR image library, which could result in denial of service and potentially the execution of arbitrary code when processing malformed ...

Summary

Multiple security issues were found in the OpenEXR image library, which
could result in denial of service and potentially the execution of
arbitrary code when processing malformed EXR image files.

For the stable distribution (buster), these problems have been fixed in
version 2.2.1-4.1+deb10u1.

We recommend that you upgrade your openexr packages.

For the detailed security status of openexr please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/openexr

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: openexr
CVE ID: CVE-2017-9111 CVE-2017-9113 CVE-2017-9114 CVE-2017-9115

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here