OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component OpenImageIO_v3_1_0::farmhash::inlined::Fetch64(char const*).
The vulnerability consists of a heap buffer overflow (CWE-122/CWE-787) in the function OpenImageIO_v3_1_0::farmhash::inlined::Fetch64(char const*). An attacker can provide specially crafted input data that causes writes beyond the boundaries of the allocated heap buffer. Due to the network vector (AV:N) and lack of privilege and user interaction requirements (PR:N, UI:N), the exploit can be performed remotely and fully automatically.
Successful exploitation of the vulnerability can lead to arbitrary code execution (RCE) in the context of the process using the library, as well as breach of confidentiality, integrity and system availability.
Patches available from the vendor should be applied in accordance with the references. It is recommended to monitor the official project repository (AcademySoftwareFoundation/OpenImageIO) to obtain an updated version containing the fix.
OpenImageIO v3.1.0.0dev
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HOpenimageio
APPOpenimageio3.1.0.0
Related vulnerabilities
Heap overflow w OpenImageIO przez komponent fmath.h
Naruszenie segmentacji (segfault) w OpenImageIO przez komponent string_view.h
Buffer Overflow w OpenImageIO umożliwiający RCE i DoS
Heap buffer overflow w parserze TIFF biblioteki OpenImageIO — możliwe RCE
OpenImageIO: heap out-of-bounds write przy przetwarzaniu obrazów BMP z kodowaniem RLE