Unrated severityNVD Advisory· Published Aug 23, 2022· Updated Aug 3, 2024
CVE-2021-20304
CVE-2021-20304
Description
A flaw was found in OpenEXR's hufDecode functionality. This flaw allows an attacker who can pass a crafted file to be processed by OpenEXR, to trigger an undefined right shift error. The highest threat from this vulnerability is to system availability.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- security.gentoo.org/glsa/202210-31mitrevendor-advisory
- access.redhat.com/security/cve/CVE-2021-20304mitre
- bugs.chromium.org/p/oss-fuzz/issues/detailmitre
- bugzilla.redhat.com/show_bug.cgimitre
- github.com/AcademySoftwareFoundation/openexr/commit/51a92d67f53c08230734e74564c807043cbfe41emitre
- github.com/AcademySoftwareFoundation/openexr/pull/849mitre
News mentions
0No linked articles in our index yet.