pkg:Debian/openexr
81 total CVEsCRITICAL3HIGH25MEDIUM48LOW1
✅ Check your installed version
All known vulnerabilities
- CRITICAL9.8CVE-2026-42217OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture indu…from 0
- CRITICAL9.1CVE-2026-42216OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture indu…from 0
- CRITICAL9.1CVE-2023-5841Due to a failure in validating the number of scanline samples of a OpenEXR file containing deep scanline data, Academy Software Foundation…from 0
- HIGH8.8CVE-2026-41142OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture indu…from 0
- from 0, < 2.2.1-4.1+deb10u1
- from 0, < 2.5.3-2
- HIGH8.8CVE-2021-23169A heap-buffer overflow was found in the copyIntoFrameBuffer function of OpenEXR in versions before 3.0.1.from 0, < 2.5.4-2
- HIGH8.8CVE-2018-18444makeMultiView.cpp in exrmultiview in OpenEXR 2.3.0 has an out-of-bounds write, leading to an assertion failure or possibly unspecified othe…from 0, < 2.5.3-2
- HIGH8.8CVE-2017-9115In OpenEXR 2.2.0, an invalid write of size 2 in the = operator function in half.h could cause the application to crash or execute arbitrary…from 0, < 2.5.3-2
- HIGH8.8CVE-2017-9113In OpenEXR 2.2.0, an invalid write of size 1 in the bufferedReadPixels function in ImfInputFile.cpp could cause the application to crash or…from 0, < 2.5.3-2
- from 0
- from 0
- HIGH7.8CVE-2025-12840Academy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability.from 0
- HIGH7.8CVE-2025-12839Academy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability.from 0
- HIGH7.8CVE-2025-12495Academy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability.from 0
- from 0, < 2.2.0-11+deb9u1
- from 0, < 2.2.0-11.1
- from 0
- HIGH7.5CVE-2026-34543OpenEXR: Heap information disclosure in PXR24 decompression via unchecked decompressed size (undo_pxr24_impl)from 0
- from 0, < 2.5.4-1
- from 0, < 2.5.4-1
- from 0, < 2.2.0-11+deb9u4
- from 0, < 2.5.4-1
- from 0
- HIGH7.3CVE-2026-34545OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture indu…from 0
- HIGH7.1CVE-2026-40250OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture indu…from 0
- HIGH7.1CVE-2026-40244OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture indu…from 0
- HIGH7.1CVE-2026-34379OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture indu…from 0
- MEDIUM6.5CVE-2026-34378OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture indu…from 0
- from 0, < 2.2.0-11.1
- MEDIUM6.5CVE-2021-3941In ImfChromaticities.cpp routine RGBtoXYZ(), there are some division operations such as `float Z = (1 - chroma.white.x - chroma.white.y) *…from 0, < 2.5.4-2+deb11u1
- MEDIUM6.5CVE-2017-9116In OpenEXR 2.2.0, an invalid read of size 1 in the uncompress function in ImfZip.cpp could cause the application to crash.from 0, < 2.2.0-11.1
- MEDIUM6.5CVE-2017-9114In OpenEXR 2.2.0, an invalid read of size 1 in the refill function in ImfFastHuf.cpp could cause the application to crash.from 0, < 2.2.0-11.1
- from 0, < 1.6.1-6+deb7u1
- from 0, < 2.2.0-11.1
- from 0, < 2.5.4-1
- MEDIUM5.9CVE-2026-34380OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture indu…from 0
- from 0
- MEDIUM5.5CVE-2021-3933An integer overflow could occur when OpenEXR processes a crafted file on systems where size_t < 64 bits.from 0, < 2.5.4-2+deb11u1
- from 0, < 2.5.4-1
- MEDIUM5.5CVE-2021-20300A flaw was found in OpenEXR's hufUncompress functionality in OpenEXR/IlmImf/ImfHuf.cpp.from 0, < 2.5.4-1
- MEDIUM5.5CVE-2021-45942OpenEXR 3.1.x before 3.1.4 has a heap-based buffer overflow in Imf_3_1::LineCompositeTask::execute (called from IlmThread_3_1::NullThreadPo…from 0, < 2.5.4-2+deb11u1
- MEDIUM5.5CVE-2021-3605There's a flaw in OpenEXR's rleUncompress functionality in versions prior to 3.0.5.from 0, < 2.5.4-2+deb11u1
- MEDIUM5.5CVE-2021-3598There's a flaw in OpenEXR's ImfDeepScanLineInputFile functionality in versions prior to 3.0.5.from 0, < 2.5.4-2+deb11u1
- MEDIUM5.5CVE-2021-26945An integer overflow leading to a heap-buffer overflow was found in OpenEXR in versions before 3.0.1.from 0
- MEDIUM5.5CVE-2021-26260An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1.from 0, < 2.5.4-2+deb11u1
- from 0, < 2.5.4-2+deb11u1
- from 0, < 2.5.4-2+deb11u1
- MEDIUM5.5CVE-2021-3479There's a flaw in OpenEXR's Scanline API functionality in versions before 3.0.0-beta.from 0, < 2.5.4-1
- MEDIUM5.5CVE-2021-3478There's a flaw in OpenEXR's scanline input file functionality in versions before 3.0.0-beta.from 0, < 2.5.4-1
- MEDIUM5.5CVE-2021-3477There's a flaw in OpenEXR's deep tile sample size calculations in versions before 3.0.0-beta.from 0, < 2.5.4-1
- MEDIUM5.5CVE-2020-16589A head-based buffer overflow exists in Academy Software Foundation OpenEXR 2.3.0 in writeTileData in ImfTiledOutputFile.cpp that can cause…from 0, < 2.5.3-2
- from 0, < 2.5.3-2
- from 0, < 2.2.0-11+deb9u2
- from 0, < 2.5.3-2
- from 0, < 2.2.1-4.1+deb10u2
- from 0, < 2.2.0-11+deb9u3
- from 0, < 2.5.3-2
- from 0, < 2.5.3-2
- from 0, < 2.5.3-2
- from 0, < 2.5.3-2
- from 0, < 2.5.3-2
- from 0, < 2.5.3-2
- from 0, < 2.5.3-2
- from 0, < 2.5.3-2
- from 0, < 2.5.3-2
- from 0, < 2.5.3-2
- from 0, < 2.5.3-2
- MEDIUM5.5CVE-2017-14988Header::readfrom in IlmImf/ImfHeader.cpp in OpenEXR 2.2.0 allows remote attackers to cause a denial of service (excessive memory allocation…from 0
- MEDIUM5.3CVE-2026-39886OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture indu…from 0
- from 0, < 2.5.4-1
- MEDIUM5.3CVE-2021-3476A flaw was found in OpenEXR's B44 uncompression functionality in versions before 3.0.0-beta.from 0, < 2.5.4-1
- from 0, < 2.5.4-1
- from 0, < 2.5.4-1
- from 0
- MEDIUM4.3CVE-2018-18443OpenEXR 2.3.0 has a memory leak in ThreadPool in IlmBase/IlmThread/IlmThreadPool.cpp, as demonstrated by exrmultiview.from 0, < 2.5.3-2
- LOW3.3CVE-2024-31047An issue in Academy Software Foundation openexr v.3.2.3 and before allows a local attacker to cause a denial of service (DoS) via the conve…from 0
- —CVE-2009-1722Heap-based buffer overflow in the compression implementation in OpenEXR 1.2.2 allows context-dependent attackers to cause a denial of servi…from 0, < 1.6.1-1
- —CVE-2009-1721The decompression implementation in the Imf::hufUncompress function in OpenEXR 1.2.2 and 1.6.1 allows context-dependent attackers to cause…from 0, < 1.6.1-4.1
- from 0, < 1.6.1-4.1
- from 0, < 1.2.2-4.3+etch2