#VU51176 Heap-based buffer overflow in OpenEXR - CVE-2020-16587
Published: March 3, 2021
OpenEXR
OpenEXR
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary error in chunkOffsetReconstruction in ImfMultiPartInputFile.cpp. A remote attacker can use a specially crafted EXR file, trigger heap-based buffer overflow and cause a denial of service condition on the target system.