github AcademySoftwareFoundation/openexr v2.5.5

latest releases: v3.3.9-rc2, v3.2.7-rc, v3.3.9-rc...
5 years ago

Patch release with various bug/sanitizer/security fixes, primarily related to reading corrupted input files, but also a fix for universal build support on macOS.

Specific OSS-fuzz issues include:

  • OSS-fuzz #30291 Timeout in openexr_exrcheck_fuzzer
  • OSS-fuzz #29106 Heap-buffer-overflow in Imf_2_5::FastHufDecoder::decode
  • OSS-fuzz #28971 Undefined-shift in Imf_2_5::cachePadding
  • OSS-fuzz #29829 Integer-overflow in Imf_2_5::DwaCompressor::initializeBuffers
  • OSS-fuzz #30121 Out-of-memory in openexr_exrcheck_fuzzer

Don't miss a new openexr release

NewReleases is sending notifications on new releases.