CVE-2022-43600
published 2022-12-22CVE-2022-43600: Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafted…
PriorityP347high8.1CVSS 3.1
AVNACHPRNUINSUCHIHAH
EPSS
1.66%
74.0th percentile
Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafted ImageOutput Object can lead to a heap buffer overflow. An attacker can provide malicious input to trigger these vulnerabilities.This vulnerability arises when the `xmax` variable is set to 0xFFFF and `m_spec.format` is `TypeDesc::UINT16`
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | openimageio | < openimageio 2.4.7.1+dfsg-2 (bookworm) | openimageio 2.4.7.1+dfsg-2 (bookworm) |
| openimageio | openimageio | — | — |
| openimageio | openimageio | >= 0 < 2.2.10.1+dfsg-1+deb11u1 | 2.2.10.1+dfsg-1+deb11u1 |
| openimageio | openimageio | >= 0 < 2.4.7.1+dfsg-2 | 2.4.7.1+dfsg-2 |
| openimageio | openimageio | >= 0 < 2.4.7.1+dfsg-2 | 2.4.7.1+dfsg-2 |
| openimageio | openimageio | >= 0 < 2.4.7.1+dfsg-2 | 2.4.7.1+dfsg-2 |
| openimageio_project | openimageio | — | — |
CVSS provenance
nvdv3.18.1HIGHCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv3.08.1HIGHCVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
osv8.1HIGH
vendor_debian8.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2022-43600: openimageio - Multiple code execution vulnerabilities exist in the IFFOutput::close() function...
vendor_debian·2022·CVSS 8.1
CVE-2022-43600 [HIGH] CVE-2022-43600: openimageio - Multiple code execution vulnerabilities exist in the IFFOutput::close() function...
Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafted ImageOutput Object can lead to a heap buffer overflow. An attacker can provide malicious input to trigger these vulnerabilities.This vulnerability arises when the `xmax` variable is set to 0xFFFF and `m_spec.format` is `TypeDesc::UINT16`
Scope: local
bookworm: resolved (fixed in 2.4.7.1+dfsg-2)
bullseye: resolved (fixed in 2.2.10.1+dfsg-1+deb11u1)
forky: resolved (fixed in 2.4.7.1+dfsg-2)
sid: resolved (fixed in 2.4.7.1+dfsg-2)
trixie: resolved (fixed in 2.4.7.1+dfsg-2)
GHSA
GHSA-j94m-6fwj-5pv8: Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of OpenImageIO Project OpenImageIO v2
ghsa_unreviewed·2022-12-23
CVE-2022-43600 [HIGH] CWE-122 GHSA-j94m-6fwj-5pv8: Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of OpenImageIO Project OpenImageIO v2
Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafted ImageOutput Object can lead to a heap buffer overflow. An attacker can provide malicious input to trigger these vulnerabilities.This vulnerability arises when the `xmax` variable is set to 0xFFFF and `m_spec.format` is `TypeDesc::UINT16`
OSV
CVE-2022-43600: Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of OpenImageIO Project OpenImageIO v2
osv·2022-12-22·CVSS 8.1
CVE-2022-43600 [HIGH] CVE-2022-43600: Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of OpenImageIO Project OpenImageIO v2
Multiple code execution vulnerabilities exist in the IFFOutput::close() functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafted ImageOutput Object can lead to a heap buffer overflow. An attacker can provide malicious input to trigger these vulnerabilities.This vulnerability arises when the `xmax` variable is set to 0xFFFF and `m_spec.format` is `TypeDesc::UINT16`
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://security.gentoo.org/glsa/202305-33https://talosintelligence.com/vulnerability_reports/TALOS-2022-1656https://www.debian.org/security/2023/dsa-5384https://security.gentoo.org/glsa/202305-33https://talosintelligence.com/vulnerability_reports/TALOS-2022-1656https://www.debian.org/security/2023/dsa-5384
2022-12-22
Published