O

Openexr Security Vulnerabilities (CVE)

Explore vulnerabilities and security advisories affecting Openexr products.

6 known CVE vulnerabilities tracked

Critical
0
High
5
Medium
1
Low
0
None
0

Vulnerabilities By Year

Products Affected

All Openexr CVEs

CVE-2026-40250
7.1 high

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In versions 3.4.0 through 3.4.9, 3.3.0 through 3.3.9, and 3.2.0 through 3.2.7, `internal_dwa_compressor.h:1040` performs `chan->width * chan->bytes_per_ele

Openexr Apr 21, 2026
CVE-2026-40244
7.1 high

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In versions 3.4.0 through 3.4.9, 3.3.0 through 3.3.9, and 3.2.0 through 3.2.7, `internal_dwa_compressor.h:1722` performs `curc->width * curc->height` in `i

Openexr Apr 21, 2026
CVE-2026-39886
5.3 medium

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. Versions 3.4.0 through 3.4.9 have a signed integer overflow vulnerability in OpenEXR's HTJ2K (High-Throughput JPEG 2000) decompression path. The `ht_undo_i

Openexr Apr 21, 2026
CVE-2025-12840
7.8 high

Academy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Academy Software Foundation OpenEXR. User interaction is required to exploit this vul

Openexr Dec 23, 2025
CVE-2025-12839
7.8 high

Academy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Academy Software Foundation OpenEXR. User interaction is required to exploit this vul

Openexr Dec 23, 2025
CVE-2025-12495
7.8 high

Academy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Academy Software Foundation OpenEXR. User interaction is required to exploit this vul

Openexr Dec 23, 2025