VuXML IDDescription
e4d9dffb-2a32-11ea-9693-e1b3f6feec79OpenEXR -- heap buffer overflow, and out-of-memory bugs

Cary Phillips reports:

OpenEXR (IlmBase) v2.4.0 fixes the following security vulnerabilities:

  • CVE-2018-18444 Issue #351 Out of Memory
  • CVE-2018-18443 Issue #350 heap-buffer-overflow

The relevant patches have been backported to the FreeBSD ports.

Discovery 2018-10-17
Entry 2019-12-29
lt 2.3.0_4

lt 2.3.0_3