Revision Date: | 2021-05-04 | Version: | 1 |
Title: | Security update for openexr (Important) |
Description: |
This update for openexr fixes the following issues:
- CVE-2021-23215: Fixed an integer-overflow in Imf_2_5:DwaCompressor:initializeBuffers (bsc#1185216). - CVE-2021-26260: Fixed an Integer-overflow in Imf_2_5:DwaCompressor:initializeBuffers (bsc#1185217). - CVE-2021-20296: Fixed a Null Pointer dereference in Imf_2_5:hufUncompress (bsc#1184355). - CVE-2021-3477: Fixed a Heap-buffer-overflow in Imf_2_5::DeepTiledInputFile::readPixelSampleCounts (bsc#1184353). - CVE-2021-3479: Fixed an Out-of-memory caused by allocation of a very large buffer (bsc#1184354).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1184353 1184354 1184355 1185216 1185217 CVE-2021-20296 CVE-2021-23215 CVE-2021-26260 CVE-2021-3477 CVE-2021-3479
|
Platform(s): | SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP3
| Product(s): | |