Project Subscriptions
No data.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 25 Aug 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 25 Aug 2026 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OpenEXR is the reference implementation and specification for the EXR high-dynamic-range image file format, widely used in the motion picture industry. Versions 3.4.0 through 3.4.12 contain a NULL pointer dereference in the OpenEXRCore function exr_attr_set_bytes(). The public setter validates the top-level exr_attr_bytes_t value pointer but does not verify that the nested type_hint pointer is non-NULL when hint_length is greater than zero. When a caller supplies a positive hint_length together with a NULL type_hint, exr_attr_bytes_create() allocates a destination type-hint buffer and then copies from the NULL source pointer, causing a deterministic crash. The flaw is reachable through the public OpenEXRCore C API and results in a denial of service. The issue is fixed in version 3.4.13. | |
| Title | OpenEXR: OpenEXRCore exr_attr_set_bytes() accepts NULL type_hint with positive hint_length | |
| Weaknesses | CWE-20 CWE-476 |
|
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-08-25T19:22:48.186Z
Reserved: 2026-06-16T18:57:40.181Z
Link: CVE-2026-55371
Updated: 2026-08-25T18:32:46.622Z
Status : Received
Published: 2026-08-25T01:16:36.810
Modified: 2026-08-25T20:16:57.100
Link: CVE-2026-55371
No data.
OpenCVE Enrichment
Updated: 2026-08-25T03:00:12Z