CVE Database
/

CVE-2021-3605

Back to search

CVE-2021-3605

Published: Aug 25, 2021

Modified: Aug 3, 2024

PUBLISHED

Description

There's a flaw in OpenEXR's rleUncompress functionality in versions prior to 3.0.5. An attacker who is able to submit a crafted file to an application linked with OpenEXR could cause an out-of-bounds read. The greatest risk from this flaw is to application availability.

VendorProductVersions

n/a

OpenEXR

affected
OpenEXR 3.0.5

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now