cbcvebase.
CVE-2020-11758
published 2020-04-14

CVE-2020-11758: An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read in ImfOptimizedPixelReading.h.

medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read in ImfOptimizedPixelReading.h.

Affected

34 ranges· showing 25
VendorProductVersion rangeFixed in
appleicloud< 7.207.20
appleicloud>= 11.0 < 11.311.3
appleios_13.6_and_ipados
appleipados< 13.613.6
appleiphone_os< 13.613.6
appleitunes< 12.10.812.10.8
applemac_os_x< 10.15.610.15.6
applemac_os_x
applemac_os_x
applemac_os_x>= 10.13.0 < 10.13.610.13.6
applemac_os_x>= 10.14.0 < 10.14.610.14.6
applemacos_catalina_10.15.6_security_update_2020-004_mojave_security_update_2020-004
appletvos< 13.4.813.4.8
appletvos
applewatchos< 6.2.86.2.8
applewatchos
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debiandebian_linux
debianopenexr< openexr 2.5.3-2 (bookworm)openexr 2.5.3-2 (bookworm)
fedoraprojectfedora
mozillathunderbird>= 0 < 1:68.7.0+build1-0ubuntu0.16.04.21:68.7.0+build1-0ubuntu0.16.04.2

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
osv8.8HIGH