A denial of service vulnerability exists in the DDS native tile reading functionality of OpenImageIO Project OpenImageIO v2.3.19.0 and v2.4.4.2. A specially-crafted .dds can lead to denial of service. An attacker can provide a malicious file to trigger this vulnerability.
2022-12-22T22:15:16.023
2024-11-21T07:24:14.533
Modified
CVSSv3.1: 7.5 (HIGH)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | openimageio | openimageio | 2.3.19.0 | Yes |
| Application | openimageio | openimageio | 2.4.4.2 | Yes |
| Operating System | debian | debian_linux | 11.0 | Yes |