High severity7.8NVD Advisory· Published Jul 3, 2023· Updated Jun 17, 2026
CVE-2023-36183
CVE-2023-36183
Description
Buffer Overflow vulnerability in OpenImageIO v.2.4.12.0 and before allows a remote to execute arbitrary code and obtain sensitive information via a crafted file to the readimg function.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:openimageio:openimageio:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:openimageio:openimageio:*:*:*:*:*:*:*:*range: <=2.4.12.0
- (no CPE)range: <=2.4.12.0
- OpenImageIO/OpenImageIOdescription
Patches
Vulnerability mechanics
References
4- github.com/OpenImageIO/oiio/issues/3871nvdExploitIssue TrackingVendor Advisory
- lists.debian.org/debian-lts-announce/2023/08/msg00005.htmlnvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CPHVMLS2LYMLURWFL7CMZ3Y7UMW3M4AW/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OYFTS5LK725R6KVIYJVTPN3A6B6C7E6D/nvd
News mentions
0No linked articles in our index yet.