CVE-2021-23215
published 2021-06-08CVE-2021-23215: An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1. An attacker could use this flaw to…
PriorityP420medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
EPSS
1.15%
63.4th percentile
An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1. An attacker could use this flaw to crash an application compiled with OpenEXR.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | openexr | < openexr 2.5.7-1 (bookworm) | openexr 2.5.7-1 (bookworm) |
| fedoraproject | fedora | — | — |
| openexr | openexr | < 3.0.1 | 3.0.1 |
| openexr | openexr | — | — |
| openexr | openexr | >= 0 < 2.5.4-2+deb11u1 | 2.5.4-2+deb11u1 |
| openexr | openexr | >= 0 < 2.5.7-1 | 2.5.7-1 |
| openexr | openexr | >= 0 < 2.5.7-1 | 2.5.7-1 |
| openexr | openexr | >= 0 < 2.5.7-1 | 2.5.7-1 |
| openexr | openexr | >= 0 < 2.3.0-6ubuntu0.5+esm1 | 2.3.0-6ubuntu0.5+esm1 |
| openexr | openexr | >= 0 < 2.5.7-1ubuntu0.1~esm1 | 2.5.7-1ubuntu0.1~esm1 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
vendor_ubuntu5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
OpenEXR vulnerabilities
vendor_ubuntu·2022-09-20·CVSS 5.3
CVE-2021-23215 [MEDIUM] OpenEXR vulnerabilities
Title: OpenEXR vulnerabilities
Summary: Several security issues were fixed in OpenEXR.
It was discovered that OpenEXR incorrectly handled certain malformed EXR
image files. If a user were tricked into opening a crafted EXR image file,
a remote attacker could cause a denial of service, or possibly execute
arbitrary code. These issues only affected Ubuntu 20.04 ESM. (CVE-2021-3598,
CVE-2021-3605, CVE-2021-20296, CVE-2021-23215, CVE-2021-26260)
It was discovered that OpenEXR incorrectly handled certain EXR
image files. An attacker could possibly use this issue to cause a crash
or execute arbitrary code. (CVE-2021-3933)
It was discovered that OpenEXR incorrectly handled certain EXR image files.
An attacker could possibly use this issue to cause a crash. (CVE-2021-3941)
Instructions: In ge
Ubuntu
OpenEXR vulnerabilities
vendor_ubuntu·2021-06-22
CVE-2021-3605 OpenEXR vulnerabilities
Title: OpenEXR vulnerabilities
Summary: Several security issues were fixed in OpenEXR.
USN-4996-1 fixed several vulnerabilities in OpenEXR. This update provides
the corresponding update for Ubuntu 16.04 ESM.
Original advisory details:
It was discovered that OpenEXR incorrectly handled certain malformed EXR
image files. If a user were tricked into opening a crafted EXR image file,
a remote attacker could cause a denial of service, or possibly execute
arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
OpenEXR vulnerabilities
vendor_ubuntu·2021-06-22
CVE-2021-3605 OpenEXR vulnerabilities
Title: OpenEXR vulnerabilities
Summary: Several security issues were fixed in OpenEXR.
It was discovered that OpenEXR incorrectly handled certain malformed EXR
image files. If a user were tricked into opening a crafted EXR image file,
a remote attacker could cause a denial of service, or possibly execute
arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
OpenEXR: Integer-overflow in Imf_2_5::DwaCompressor::initializeBuffers
vendor_redhat·2021-03-17·CVSS 5.5
CVE-2021-23215 [MEDIUM] CWE-190 OpenEXR: Integer-overflow in Imf_2_5::DwaCompressor::initializeBuffers
OpenEXR: Integer-overflow in Imf_2_5::DwaCompressor::initializeBuffers
An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1. An attacker could use this flaw to crash an application compiled with OpenEXR.
An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR. An attacker could use this flaw to crash an application compiled with OpenEXR.
Package: OpenEXR (Red Hat Enterprise Linux 6) - Out of support scope
Package: OpenEXR (Red Hat Enterprise Linux 7) - Fix deferred
Package: gimp:flatpak/OpenEXR (Red Hat Enterprise Linux 8) - Fix deferred
Package: OpenEXR (Red Hat Enterprise Linux 8) - Fix deferred
Package: openexr (Red Hat Enterprise Linux 9) - Not affected
Red Hat
OpenEXR: Integer-overflow in Imf_2_5::DwaCompressor::initializeBuffers
vendor_redhat·2021-03-17·CVSS 5.5
CVE-2021-26260 [MEDIUM] CWE-191 OpenEXR: Integer-overflow in Imf_2_5::DwaCompressor::initializeBuffers
OpenEXR: Integer-overflow in Imf_2_5::DwaCompressor::initializeBuffers
An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1. An attacker could use this flaw to crash an application compiled with OpenEXR. This is a different flaw from CVE-2021-23215.
An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR. An attacker could use this flaw to crash an application compiled with OpenEXR.
Package: OpenEXR (Red Hat Enterprise Linux 6) - Out of support scope
Package: OpenEXR (Red Hat Enterprise Linux 7) - Fix deferred
Package: gimp:flatpak/OpenEXR (Red Hat Enterprise Linux 8) - Fix deferred
Package: OpenEXR (Red Hat Enterprise Linux 8) - Fix deferred
Package: openexr (Red Hat Enterpri
Debian
CVE-2021-23215: openexr - An integer overflow leading to a heap-buffer overflow was found in the DwaCompre...
vendor_debian·2021·CVSS 5.5
CVE-2021-23215 [MEDIUM] CVE-2021-23215: openexr - An integer overflow leading to a heap-buffer overflow was found in the DwaCompre...
An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1. An attacker could use this flaw to crash an application compiled with OpenEXR.
Scope: local
bookworm: resolved (fixed in 2.5.7-1)
bullseye: resolved (fixed in 2.5.4-2+deb11u1)
forky: resolved (fixed in 2.5.7-1)
sid: resolved (fixed in 2.5.7-1)
trixie: resolved (fixed in 2.5.7-1)
Debian
CVE-2021-26260: openexr - An integer overflow leading to a heap-buffer overflow was found in the DwaCompre...
vendor_debian·2021·CVSS 5.5
CVE-2021-26260 [MEDIUM] CVE-2021-26260: openexr - An integer overflow leading to a heap-buffer overflow was found in the DwaCompre...
An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1. An attacker could use this flaw to crash an application compiled with OpenEXR. This is a different flaw from CVE-2021-23215.
Scope: local
bookworm: resolved (fixed in 2.5.7-1)
bullseye: resolved (fixed in 2.5.4-2+deb11u1)
forky: resolved (fixed in 2.5.7-1)
sid: resolved (fixed in 2.5.7-1)
trixie: resolved (fixed in 2.5.7-1)
OSV
openexr vulnerabilities
osv·2022-09-20·CVSS 5.3
CVE-2021-3598 [MEDIUM] openexr vulnerabilities
openexr vulnerabilities
It was discovered that OpenEXR incorrectly handled certain malformed EXR
image files. If a user were tricked into opening a crafted EXR image file,
a remote attacker could cause a denial of service, or possibly execute
arbitrary code. These issues only affected Ubuntu 20.04 ESM. (CVE-2021-3598,
CVE-2021-3605, CVE-2021-20296, CVE-2021-23215, CVE-2021-26260)
It was discovered that OpenEXR incorrectly handled certain EXR
image files. An attacker could possibly use this issue to cause a crash
or execute arbitrary code. (CVE-2021-3933)
It was discovered that OpenEXR incorrectly handled certain EXR image files.
An attacker could possibly use this issue to cause a crash. (CVE-2021-3941)
GHSA
GHSA-mr39-xfw3-r82c: An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3
ghsa_unreviewed·2022-05-24·CVSS 5.5
CVE-2021-26260 [MEDIUM] CWE-190 GHSA-mr39-xfw3-r82c: An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3
An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1. An attacker could use this flaw to crash an application compiled with OpenEXR. This is a different flaw from CVE-2021-23215.
GHSA
GHSA-4463-879q-57jx: An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3
ghsa_unreviewed·2022-05-24
CVE-2021-23215 [MEDIUM] CWE-190 GHSA-4463-879q-57jx: An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3
An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1. An attacker could use this flaw to crash an application compiled with OpenEXR.
OSV
CVE-2021-23215: An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3
osv·2021-06-08·CVSS 5.5
CVE-2021-23215 [MEDIUM] CVE-2021-23215: An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3
An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1. An attacker could use this flaw to crash an application compiled with OpenEXR.
OSV
CVE-2021-26260: An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3
osv·2021-06-08·CVSS 5.5
CVE-2021-26260 [MEDIUM] CVE-2021-26260: An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3
An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1. An attacker could use this flaw to crash an application compiled with OpenEXR. This is a different flaw from CVE-2021-23215.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://bugzilla.redhat.com/show_bug.cgi?id=1947586https://lists.debian.org/debian-lts-announce/2021/07/msg00001.htmlhttps://lists.debian.org/debian-lts-announce/2022/12/msg00022.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BXFLD4ZAXKAIWO6ZPBCQEEDZB5IG676K/https://www.debian.org/security/2022/dsa-5299https://bugzilla.redhat.com/show_bug.cgi?id=1947586https://lists.debian.org/debian-lts-announce/2021/07/msg00001.htmlhttps://lists.debian.org/debian-lts-announce/2022/12/msg00022.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BXFLD4ZAXKAIWO6ZPBCQEEDZB5IG676K/https://www.debian.org/security/2022/dsa-5299
2021-06-08
Published