SUSE-SU-2021:3843-1
Dashboard / Vulnerabilities / SUSE-SU-2021:3843-1
SUSE-SU-2021:3843-1
Summary: Security update for openexr
Details: This update for openexr fixes the following issues: - CVE-2021-3477: Fixed Heap-buffer-overflow in Imf_2_5::DeepTiledInputFile::readPixelSampleCounts (bsc#1184353). - CVE-2021-3941: Fixed divide-by-zero in Imf_3_1:RGBtoXYZ (bsc#1192556). - CVE-2021-3933: Fixed integer-overflow in Imf_3_1:bytesPerDeepLineTable (bsc#1192498).
References: https://www.suse.com/support/update/announcement/2021/suse-su-20213843-1/, https://bugzilla.suse.com/1184353, https://bugzilla.suse.com/1192498, https://bugzilla.suse.com/1192556, https://www.suse.com/security/cve/CVE-2021-3477, https://www.suse.com/security/cve/CVE-2021-3933, https://www.suse.com/security/cve/CVE-2021-3941
Affected packages
Package
Name: openexr
Purl: pkg:rpm/suse/openexr&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5
Affected ranges
Type: ECOSYSTEM
Events:
