#VU51932 Out-of-bounds read in OpenEXR - CVE-2021-3477
Published: April 6, 2021 / Updated: May 18, 2021
OpenEXR
OpenEXR
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary condition within the deep tile sample size calculations. A remote attacker can create a specially crafted file, trigger out-of-bounds read error and read contents of memory on the system.