CVE-2021-3605

Out-of-bounds Read in conan/openexr

Identifier

CVE-2021-3605

Package Slug

conan/openexr

Vulnerability

Out-of-bounds Read

Description

There's a flaw in OpenEXR's rleUncompress functionality. An attacker who is able to submit a crafted file to an application linked with OpenEXR could cause an out-of-bounds read. The greatest risk from this flaw is to application availability.

Affected Versions

All versions before 3.0.5

Solution

Upgrade to version 3.0.5 or above.

Last Modified

2021-09-02

source