ROOT-OS-DEBIAN-13-CVE-2025-12840

Source
https://root.io/security/ROOT-OS-DEBIAN-13-CVE-2025-12840
Import Source
https://api.root.io/external/osv/ROOT-OS-DEBIAN-13-CVE-2025-12840.json
JSON Data
https://api.osv.dev/v1/vulns/ROOT-OS-DEBIAN-13-CVE-2025-12840
Upstream
Published
2026-01-02T05:19:29Z
Modified
2026-02-13T03:18:31.786320Z
Summary
CVE-2025-12840 in rootio-openexr - Patched by Root
Details

Root has patched CVE-2025-12840 in the rootio-openexr package for Root:Debian:13. Multiple fixed versions available.

Database specific
{
    "distro": "debian",
    "source": "Root",
    "distro_version": "13"
}
References

Affected packages

Root:Debian:13 / rootio-openexr

Package

Name
rootio-openexr

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.1.13-2.root.io.7
Fixed
3.1.13-2.root.io.8

Database specific

upstream_version
"3.1.13-2"
source
"https://api.root.io/external/osv/ROOT-OS-DEBIAN-13-CVE-2025-12840.json"
all_fixed_versions
[
    "3.1.13-2.root.io.7",
    "3.1.13-2.root.io.8"
]
root_patched
true
root_patch_version
"root.io.7"
total_fixed_versions
2.0