Debian Openexr vulnerabilities
57 known vulnerabilities affecting debian/openexr.
Total CVEs
57
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH10MEDIUM39LOW7
Vulnerabilities
Page 1 of 3
CVE-2023-5841P3CRITICALCVSS 9.1fixed in openexr 3.1.13-1 (forky)2023
CVE-2023-5841 [CRITICAL] CVE-2023-5841: openexr - Due to a failure in validating the number of scanline samples of a OpenEXR file ...
Due to a failure in validating the number of scanline samples of a OpenEXR file containing deep scanline data, Academy Software Foundation OpenEX image parsing library version 3.2.1 and prior is susceptible to a heap-based buffer overflow vulnerability. This issue was resolved as of versions v3.2.2 and v3.1.12 of the affected library.
Scope: local
bookworm: open
b
debian
CVE-2017-9115P3HIGHCVSS 8.8fixed in openexr 2.5.3-2 (bookworm)2017
CVE-2017-9115 [HIGH] CVE-2017-9115: openexr - In OpenEXR 2.2.0, an invalid write of size 2 in the = operator function in half....
In OpenEXR 2.2.0, an invalid write of size 2 in the = operator function in half.h could cause the application to crash or execute arbitrary code.
Scope: local
bookworm: resolved (fixed in 2.5.3-2)
bullseye: resolved (fixed in 2.5.3-2)
forky: resolved (fixed in 2.5.3-2)
sid: resolved (fixed in 2.5.3-2)
trixie: resolved (fixed in 2.5.3-2)
debian
CVE-2017-9111P3HIGHCVSS 8.8fixed in openexr 2.5.3-2 (bookworm)2017
CVE-2017-9111 [HIGH] CVE-2017-9111: openexr - In OpenEXR 2.2.0, an invalid write of size 8 in the storeSSE function in ImfOpti...
In OpenEXR 2.2.0, an invalid write of size 8 in the storeSSE function in ImfOptimizedPixelReading.h could cause the application to crash or execute arbitrary code.
Scope: local
bookworm: resolved (fixed in 2.5.3-2)
bullseye: resolved (fixed in 2.5.3-2)
forky: resolved (fixed in 2.5.3-2)
sid: resolved (fixed in 2.5.3-2)
trixie: resolved (fixed in 2.5.3-2)
debian
CVE-2017-9113P3LOWCVSS 8.8fixed in openexr 2.5.3-2 (bookworm)2017
CVE-2017-9113 [HIGH] CVE-2017-9113: openexr - In OpenEXR 2.2.0, an invalid write of size 1 in the bufferedReadPixels function ...
In OpenEXR 2.2.0, an invalid write of size 1 in the bufferedReadPixels function in ImfInputFile.cpp could cause the application to crash or execute arbitrary code.
Scope: local
bookworm: resolved (fixed in 2.5.3-2)
bullseye: resolved (fixed in 2.5.3-2)
forky: resolved (fixed in 2.5.3-2)
sid: resolved (fixed in 2.5.3-2)
trixie: resolved (fixed in 2.5.3-2)
debian
CVE-2021-23169P3HIGHCVSS 8.8fixed in openexr 2.5.4-2 (bookworm)2021
CVE-2021-23169 [HIGH] CVE-2021-23169: openexr - A heap-buffer overflow was found in the copyIntoFrameBuffer function of OpenEXR ...
A heap-buffer overflow was found in the copyIntoFrameBuffer function of OpenEXR in versions before 3.0.1. An attacker could use this flaw to execute arbitrary code with the permissions of the user running the application compiled against OpenEXR.
Scope: local
bookworm: resolved (fixed in 2.5.4-2)
bullseye: resolved (fixed in 2.5.4-2)
forky: resolved (fixed in 2.5.4-
debian
CVE-2025-12840P3HIGHCVSS 7.8fixed in openexr 3.4.6+ds-1 (forky)2025
CVE-2025-12840 [HIGH] CVE-2025-12840: openexr - Academy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow ...
Academy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Academy Software Foundation OpenEXR. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a
debian
CVE-2025-12839P3HIGHCVSS 7.8fixed in openexr 3.4.6+ds-1 (forky)2025
CVE-2025-12839 [HIGH] CVE-2025-12839: openexr - Academy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow ...
Academy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Academy Software Foundation OpenEXR. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a
debian
CVE-2025-12495P3HIGHCVSS 7.8fixed in openexr 3.4.6+ds-1 (forky)2025
CVE-2025-12495 [HIGH] CVE-2025-12495: openexr - Academy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow ...
Academy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Academy Software Foundation OpenEXR. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a
debian
CVE-2026-27622P3HIGHCVSS 8.4fixed in openexr 3.4.6+ds-1 (forky)2026
CVE-2026-27622 [HIGH] CVE-2026-27622: openexr - OpenEXR provides the specification and reference implementation of the EXR file ...
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In CompositeDeepScanLine::readPixels, per-pixel totals are accumulated in vector total_sizes for attacker-controlled large counts across many parts, total_sizes[ptr] wraps modulo 2^32. overall_sample_count is then derived f
debian
CVE-2021-20299P3HIGHCVSS 7.5fixed in openexr 2.5.4-1 (bookworm)2021
CVE-2021-20299 [HIGH] CVE-2021-20299: openexr - A flaw was found in OpenEXR's Multipart input file functionality. A crafted mult...
A flaw was found in OpenEXR's Multipart input file functionality. A crafted multi-part input file with no actual parts can trigger a NULL pointer dereference. The highest threat from this vulnerability is to system availability.
Scope: local
bookworm: resolved (fixed in 2.5.4-1)
bullseye: resolved (fixed in 2.5.4-1)
forky: resolved (fixed in 2.5.4-1)
sid: resolved (
debian
CVE-2021-20298P3HIGHCVSS 7.5fixed in openexr 2.5.4-1 (bookworm)2021
CVE-2021-20298 [HIGH] CVE-2021-20298: openexr - A flaw was found in OpenEXR's B44Compressor. This flaw allows an attacker who ca...
A flaw was found in OpenEXR's B44Compressor. This flaw allows an attacker who can submit a crafted file to be processed by OpenEXR, to exhaust all memory accessible to the application. The highest threat from this vulnerability is to system availability.
Scope: local
bookworm: resolved (fixed in 2.5.4-1)
bullseye: resolved (fixed in 2.5.4-1)
forky: resolved (fixed i
debian
CVE-2021-20304P3LOWCVSS 7.5fixed in openexr 2.5.4-1 (bookworm)2021
CVE-2021-20304 [HIGH] CVE-2021-20304: openexr - A flaw was found in OpenEXR's hufDecode functionality. This flaw allows an attac...
A flaw was found in OpenEXR's hufDecode functionality. This flaw allows an attacker who can pass a crafted file to be processed by OpenEXR, to trigger an undefined right shift error. The highest threat from this vulnerability is to system availability.
Scope: local
bookworm: resolved (fixed in 2.5.4-1)
bullseye: resolved (fixed in 2.5.4-1)
forky: resolved (fixed in
debian
CVE-2025-64181P3LOWCVSS 2.0fixed in openexr 3.4.6+ds-1 (forky)2025
CVE-2025-64181 [LOW] CVE-2025-64181: openexr - OpenEXR provides the specification and reference implementation of the EXR file ...
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In versions 3.3.0 through 3.3.5 and 3.4.0 through 3.4.2, while fuzzing `openexr_exrcheck_fuzzer`, Valgrind reports a conditional branch depending on uninitialized data inside `generic_unpack`. This indicates a use of uniniti
debian
CVE-2018-18444P3LOWCVSS 8.8fixed in openexr 2.5.3-2 (bookworm)2018
CVE-2018-18444 [HIGH] CVE-2018-18444: openexr - makeMultiView.cpp in exrmultiview in OpenEXR 2.3.0 has an out-of-bounds write, l...
makeMultiView.cpp in exrmultiview in OpenEXR 2.3.0 has an out-of-bounds write, leading to an assertion failure or possibly unspecified other impact.
Scope: local
bookworm: resolved (fixed in 2.5.3-2)
bullseye: resolved (fixed in 2.5.3-2)
forky: resolved (fixed in 2.5.3-2)
sid: resolved (fixed in 2.5.3-2)
trixie: resolved (fixed in 2.5.3-2)
debian
CVE-2009-1720P3MEDIUMCVSS 7.5fixed in openexr 1.6.1-4.1 (bookworm)2009
CVE-2009-1720 [HIGH] CVE-2009-1720: openexr - Multiple integer overflows in OpenEXR 1.2.2 and 1.6.1 allow context-dependent at...
Multiple integer overflows in OpenEXR 1.2.2 and 1.6.1 allow context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unspecified vectors that trigger heap-based buffer overflows, related to (1) the Imf::PreviewImage::PreviewImage function and (2) compressor constructors. NOTE: some of these details are obtaine
debian
CVE-2017-12596P4HIGHCVSS 7.8fixed in openexr 2.2.0-11.1 (bookworm)2017
CVE-2017-12596 [HIGH] CVE-2017-12596: openexr - In OpenEXR 2.2.0, a crafted image causes a heap-based buffer over-read in the hu...
In OpenEXR 2.2.0, a crafted image causes a heap-based buffer over-read in the hufDecode function in IlmImf/ImfHuf.cpp during exrmaketiled execution; it may result in denial of service or possibly unspecified other impact.
Scope: local
bookworm: resolved (fixed in 2.2.0-11.1)
bullseye: resolved (fixed in 2.2.0-11.1)
forky: resolved (fixed in 2.2.0-11.1)
sid: resolved
debian
CVE-2009-1722P4MEDIUMCVSS 6.8fixed in openexr 1.6.1-1 (bookworm)2009
CVE-2009-1722 [MEDIUM] CVE-2009-1722: openexr - Heap-based buffer overflow in the compression implementation in OpenEXR 1.2.2 al...
Heap-based buffer overflow in the compression implementation in OpenEXR 1.2.2 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unspecified vectors.
Scope: local
bookworm: resolved (fixed in 1.6.1-1)
bullseye: resolved (fixed in 1.6.1-1)
forky: resolved (fixed in 1.6.1-1)
sid: resolved (fixed i
debian
CVE-2009-1721P4MEDIUMCVSS 6.8fixed in openexr 1.6.1-4.1 (bookworm)2009
CVE-2009-1721 [MEDIUM] CVE-2009-1721: openexr - The decompression implementation in the Imf::hufUncompress function in OpenEXR 1...
The decompression implementation in the Imf::hufUncompress function in OpenEXR 1.2.2 and 1.6.1 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors that trigger a free of an uninitialized pointer.
Scope: local
bookworm: resolved (fixed in 1.6.1-4.1)
bullseye: resolved (fixed in 1.6.1-4.1)
debian
CVE-2021-3474P4MEDIUMCVSS 5.3fixed in openexr 2.5.4-1 (bookworm)2021
CVE-2021-3474 [MEDIUM] CVE-2021-3474: openexr - There's a flaw in OpenEXR in versions before 3.0.0-beta. A crafted input file th...
There's a flaw in OpenEXR in versions before 3.0.0-beta. A crafted input file that is processed by OpenEXR could cause a shift overflow in the FastHufDecoder, potentially leading to problems with application availability.
Scope: local
bookworm: resolved (fixed in 2.5.4-1)
bullseye: resolved (fixed in 2.5.4-1)
forky: resolved (fixed in 2.5.4-1)
sid: resolved (fixed i
debian
CVE-2021-3476P4MEDIUMCVSS 5.3fixed in openexr 2.5.4-1 (bookworm)2021
CVE-2021-3476 [MEDIUM] CVE-2021-3476: openexr - A flaw was found in OpenEXR's B44 uncompression functionality in versions before...
A flaw was found in OpenEXR's B44 uncompression functionality in versions before 3.0.0-beta. An attacker who is able to submit a crafted file to OpenEXR could trigger shift overflows, potentially affecting application availability.
Scope: local
bookworm: resolved (fixed in 2.5.4-1)
bullseye: resolved (fixed in 2.5.4-1)
forky: resolved (fixed in 2.5.4-1)
sid: resolve
debian
1 / 3Next →