A vulnerability was found in OpenImageIO, where a heap buffer overflow exists in the src/gif.imageio/gifinput.cpp file. This flaw allows a remote attacker to pass a specially crafted file to the application, which triggers a heap-based buffer overflow and could cause a crash, leading to a denial of service.
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "2.4.14.0+dfsg-1", "binary_name": "libopenimageio-dev" }, { "binary_version": "2.4.14.0+dfsg-1", "binary_name": "libopenimageio-doc" }, { "binary_version": "2.4.14.0+dfsg-1", "binary_name": "libopenimageio2.4" }, { "binary_version": "2.4.14.0+dfsg-1", "binary_name": "libopenimageio2.4-dbgsym" }, { "binary_version": "2.4.14.0+dfsg-1", "binary_name": "openimageio-tools" }, { "binary_version": "2.4.14.0+dfsg-1", "binary_name": "openimageio-tools-dbgsym" }, { "binary_version": "2.4.14.0+dfsg-1", "binary_name": "python3-openimageio" } ] }