ALT-BU-2019-3963-1
Branch p9 update bulletin.
Closed vulnerabilities
BDU:2018-00020
Уязвимость функции uncompress (ImfZip.cpp) библиотеки OpenEXR, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2021-03495
Уязвимость функции operator компонента half.h программного обеспечения для хранения изображений с широкими динамическими диапазоном яркости OpenEXR, связанная с выходом операции за допустимые границы буфера данных, позволяющая нарушителю получить доступ к конфиденциальной информации или вызвать отказ в обслуживании
BDU:2021-03496
Уязвимость функции refill компонента ImfFastHuf.cpp программного обеспечения для хранения изображений с широкими динамическими диапазоном яркости OpenEXR, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2021-03497
Уязвимость функции bufferedReadPixels программного обеспечения для хранения изображений с широкими динамическими диапазоном яркости OpenEXR, связанная с недостаточной проверки входных данных, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2021-03498
Уязвимость функции storeSSE программного обеспечения для хранения изображений с широкими динамическими диапазоном яркости OpenEXR, позволяющая нарушителю получить доступ к конфиденциальной информации или вызвать отказ в обслуживании
BDU:2021-03759
Уязвимость функции hufDecode библиотеки OpenEXR, связанная с чтением за допустимыми границами буфера данных, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2021-03765
Уязвимость функции getBits библиотеки OpenEXR, связанная с связанная с чтением за допустимыми границами буфера данных, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2021-03768
Уязвимость функции hufDecode библиотеки OpenEXR, связанная с чтением за допустимыми границами буфера данных, позволяющая нарушителю получить доступ к конфиденциальной информации или вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2017-12596
In OpenEXR 2.2.0, a crafted image causes a heap-based buffer over-read in the hufDecode function in IlmImf/ImfHuf.cpp during exrmaketiled execution; it may result in denial of service or possibly unspecified other impact.
- https://github.com/openexr/openexr/issues/238
- https://github.com/openexr/openexr/issues/238
- https://github.com/openexr/openexr/releases/tag/v2.3.0
- https://github.com/openexr/openexr/releases/tag/v2.3.0
- https://github.com/xiaoqx/pocs/blob/master/openexr.md
- https://github.com/xiaoqx/pocs/blob/master/openexr.md
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- USN-4148-1
- USN-4148-1
Modified: 2024-11-21
CVE-2017-14988
Header::readfrom in IlmImf/ImfHeader.cpp in OpenEXR 2.2.0 allows remote attackers to cause a denial of service (excessive memory allocation) via a crafted file that is accessed with the ImfOpenInputFile function in IlmImf/ImfCRgbaFile.cpp. NOTE: The maintainer and multiple third parties believe that this vulnerability isn't valid
Modified: 2024-11-21
CVE-2017-9110
In OpenEXR 2.2.0, an invalid read of size 2 in the hufDecode function in ImfHuf.cpp could cause the application to crash.
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- USN-4148-1
- USN-4148-1
Modified: 2024-11-21
CVE-2017-9111
In OpenEXR 2.2.0, an invalid write of size 8 in the storeSSE function in ImfOptimizedPixelReading.h could cause the application to crash or execute arbitrary code.
- openSUSE-SU-2019:1816
- openSUSE-SU-2019:1816
- openSUSE-SU-2019:1826
- openSUSE-SU-2019:1826
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- USN-4148-1
- USN-4148-1
- USN-4339-1
- USN-4339-1
- DSA-4755
- DSA-4755
Modified: 2024-11-21
CVE-2017-9112
In OpenEXR 2.2.0, an invalid read of size 1 in the getBits function in ImfHuf.cpp could cause the application to crash.
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- USN-4148-1
- USN-4148-1
Modified: 2024-11-21
CVE-2017-9113
In OpenEXR 2.2.0, an invalid write of size 1 in the bufferedReadPixels function in ImfInputFile.cpp could cause the application to crash or execute arbitrary code.
- openSUSE-SU-2019:1816
- openSUSE-SU-2019:1816
- openSUSE-SU-2019:1826
- openSUSE-SU-2019:1826
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- USN-4148-1
- USN-4148-1
- USN-4339-1
- USN-4339-1
- DSA-4755
- DSA-4755
Modified: 2024-11-21
CVE-2017-9114
In OpenEXR 2.2.0, an invalid read of size 1 in the refill function in ImfFastHuf.cpp could cause the application to crash.
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- DSA-4755
- DSA-4755
Modified: 2024-11-21
CVE-2017-9115
In OpenEXR 2.2.0, an invalid write of size 2 in the = operator function in half.h could cause the application to crash or execute arbitrary code.
- openSUSE-SU-2019:1816
- openSUSE-SU-2019:1816
- openSUSE-SU-2019:1826
- openSUSE-SU-2019:1826
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- USN-4148-1
- USN-4148-1
- USN-4339-1
- USN-4339-1
- DSA-4755
- DSA-4755
Modified: 2024-11-21
CVE-2017-9116
In OpenEXR 2.2.0, an invalid read of size 1 in the uncompress function in ImfZip.cpp could cause the application to crash.
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- USN-4148-1
- USN-4148-1
Closed vulnerabilities
BDU:2018-00020
Уязвимость функции uncompress (ImfZip.cpp) библиотеки OpenEXR, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2021-03495
Уязвимость функции operator компонента half.h программного обеспечения для хранения изображений с широкими динамическими диапазоном яркости OpenEXR, связанная с выходом операции за допустимые границы буфера данных, позволяющая нарушителю получить доступ к конфиденциальной информации или вызвать отказ в обслуживании
BDU:2021-03496
Уязвимость функции refill компонента ImfFastHuf.cpp программного обеспечения для хранения изображений с широкими динамическими диапазоном яркости OpenEXR, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2021-03497
Уязвимость функции bufferedReadPixels программного обеспечения для хранения изображений с широкими динамическими диапазоном яркости OpenEXR, связанная с недостаточной проверки входных данных, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2021-03498
Уязвимость функции storeSSE программного обеспечения для хранения изображений с широкими динамическими диапазоном яркости OpenEXR, позволяющая нарушителю получить доступ к конфиденциальной информации или вызвать отказ в обслуживании
BDU:2021-03759
Уязвимость функции hufDecode библиотеки OpenEXR, связанная с чтением за допустимыми границами буфера данных, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2021-03765
Уязвимость функции getBits библиотеки OpenEXR, связанная с связанная с чтением за допустимыми границами буфера данных, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2021-03768
Уязвимость функции hufDecode библиотеки OpenEXR, связанная с чтением за допустимыми границами буфера данных, позволяющая нарушителю получить доступ к конфиденциальной информации или вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2017-12596
In OpenEXR 2.2.0, a crafted image causes a heap-based buffer over-read in the hufDecode function in IlmImf/ImfHuf.cpp during exrmaketiled execution; it may result in denial of service or possibly unspecified other impact.
- https://github.com/openexr/openexr/issues/238
- https://github.com/openexr/openexr/issues/238
- https://github.com/openexr/openexr/releases/tag/v2.3.0
- https://github.com/openexr/openexr/releases/tag/v2.3.0
- https://github.com/xiaoqx/pocs/blob/master/openexr.md
- https://github.com/xiaoqx/pocs/blob/master/openexr.md
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- USN-4148-1
- USN-4148-1
Modified: 2024-11-21
CVE-2017-14988
Header::readfrom in IlmImf/ImfHeader.cpp in OpenEXR 2.2.0 allows remote attackers to cause a denial of service (excessive memory allocation) via a crafted file that is accessed with the ImfOpenInputFile function in IlmImf/ImfCRgbaFile.cpp. NOTE: The maintainer and multiple third parties believe that this vulnerability isn't valid
Modified: 2024-11-21
CVE-2017-9110
In OpenEXR 2.2.0, an invalid read of size 2 in the hufDecode function in ImfHuf.cpp could cause the application to crash.
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- USN-4148-1
- USN-4148-1
Modified: 2024-11-21
CVE-2017-9111
In OpenEXR 2.2.0, an invalid write of size 8 in the storeSSE function in ImfOptimizedPixelReading.h could cause the application to crash or execute arbitrary code.
- openSUSE-SU-2019:1816
- openSUSE-SU-2019:1816
- openSUSE-SU-2019:1826
- openSUSE-SU-2019:1826
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- USN-4148-1
- USN-4148-1
- USN-4339-1
- USN-4339-1
- DSA-4755
- DSA-4755
Modified: 2024-11-21
CVE-2017-9112
In OpenEXR 2.2.0, an invalid read of size 1 in the getBits function in ImfHuf.cpp could cause the application to crash.
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- USN-4148-1
- USN-4148-1
Modified: 2024-11-21
CVE-2017-9113
In OpenEXR 2.2.0, an invalid write of size 1 in the bufferedReadPixels function in ImfInputFile.cpp could cause the application to crash or execute arbitrary code.
- openSUSE-SU-2019:1816
- openSUSE-SU-2019:1816
- openSUSE-SU-2019:1826
- openSUSE-SU-2019:1826
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- USN-4148-1
- USN-4148-1
- USN-4339-1
- USN-4339-1
- DSA-4755
- DSA-4755
Modified: 2024-11-21
CVE-2017-9114
In OpenEXR 2.2.0, an invalid read of size 1 in the refill function in ImfFastHuf.cpp could cause the application to crash.
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- DSA-4755
- DSA-4755
Modified: 2024-11-21
CVE-2017-9115
In OpenEXR 2.2.0, an invalid write of size 2 in the = operator function in half.h could cause the application to crash or execute arbitrary code.
- openSUSE-SU-2019:1816
- openSUSE-SU-2019:1816
- openSUSE-SU-2019:1826
- openSUSE-SU-2019:1826
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- USN-4148-1
- USN-4148-1
- USN-4339-1
- USN-4339-1
- DSA-4755
- DSA-4755
Modified: 2024-11-21
CVE-2017-9116
In OpenEXR 2.2.0, an invalid read of size 1 in the uncompress function in ImfZip.cpp could cause the application to crash.
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- http://www.openwall.com/lists/oss-security/2017/05/12/5
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/issues/232
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/pull/233
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- https://github.com/openexr/openexr/releases/tag/v2.2.1
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- [debian-lts-announce] 20200830 [SECURITY] [DLA 2358-1] openexr security update
- USN-4148-1
- USN-4148-1