Description
A flaw was found in OpenEXR in versions before 3.0.0-beta. A crafted input file supplied by an attacker, that is processed by the Dwa decompression functionality of OpenEXR's IlmImf library, could cause a NULL pointer dereference. The highest threat from this vulnerability is to system availability.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2701-1 | openexr security update |
Debian DLA |
DLA-3236-1 | openexr security update |
EUVD |
EUVD-2021-7721 | A flaw was found in OpenEXR in versions before 3.0.0-beta. A crafted input file supplied by an attacker, that is processed by the Dwa decompression functionality of OpenEXR's IlmImf library, could cause a NULL pointer dereference. The highest threat from this vulnerability is to system availability. |
Ubuntu USN |
USN-4996-1 | OpenEXR vulnerabilities |
Ubuntu USN |
USN-4996-2 | OpenEXR vulnerabilities |
Ubuntu USN |
USN-5620-1 | OpenEXR vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-03T17:37:23.528Z
Reserved: 2020-12-17T00:00:00.000Z
Link: CVE-2021-20296
No data.
Status : Modified
Published: 2021-04-01T14:15:13.310
Modified: 2024-11-21T05:46:18.237
Link: CVE-2021-20296
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Ubuntu USN