CVE-2021-3478: Uncontrolled Resource Consumption
(updated )
There’s a flaw in OpenEXR’s scanline input file functionality . An attacker able to submit a crafted file to be processed by OpenEXR could consume excessive system memory. The greatest impact of this flaw is to system availability.
References
Detect and mitigate CVE-2021-3478 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →