Integer overflow in OpenEXR - CVE-2021-3476
Published: April 6, 2021 / Updated: May 18, 2021
OpenEXR
OpenEXR
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) on the target system.
The vulnerability exists due to integer overflow in B44 uncompression functionality. A remote attacker can pass specially crafted file, trigger integer overflow and cause a denial of service condition on the target system.