[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

253562

 
 

909

 
 

197267

 
 

282

Paid content will be excluded from the download.


Download | Alert*


CVE-2021-3933
An integer overflow could occur when OpenEXR processes a crafted file on systems where size_t < 64 bits. This could cause an invalid bytesPerLine and maxBytesPerLine value, which could lead to problems with application stability or lead to other attack paths.

CVE-2021-3941
In ImfChromaticities.cpp routine RGBtoXYZ(), there are some division operations such as `float Z = (1 - chroma.white.x - chroma.white.y) * Y / chroma.white.y;` and `chroma.green.y * (X + Z))) / d;` but the divisor is not checked for a 0 value. A specially crafted file could trigger a divide-by-zero ...

*OVAL
oval:org.secpod.oval:def:89047301
CPE    5
cpe:/a:openexr:openexr
cpe:/a:libIlmImf:libIlmImfUtil-2_2-23
cpe:/a:libIlmImf:libIlmImf-2_2-23
cpe:/o:suse:suse_linux_enterprise_desktop:15:sp3
...

© SecPod Technologies