Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 526
Alerts This Week
Warning Icon 1 526

Debian 7 Wheezy DLA-1083-1 Urgent Openexr Denial of Service Vulnerability

debian lts
Calendar Grey September 1, 2017
Scroller Debian Lts
OpenEXR patch addresses integer overflow vulnerabilities, allowing denial of service through specially crafted images. Users are advised to upgrade.
Brandon Perry discovered that openexr, a high dynamic-range (HDR) image library, was affected by an integer overflow vulnerability and missing boundary checks that would allow a re...

Summary

For Debian 7 "Wheezy", these problems have been fixed in version
1.6.1-6+deb7u1.

We recommend that you upgrade your openexr packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS


Severity
important
Lowest
Low
Medium
High
Critical

Package: openexr
Version: 1.6.1-6+deb7u1
CVE ID: CVE-2017-9110 CVE-2017-9112 CVE-2017-9116
Debian Bug: 864078

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.