First published: Wed Oct 17 2018(Updated: )
Last updated 24 July 2024
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/openexr | 2.5.4-2+deb11u1 3.1.5-5 3.1.5-5.1 | |
OpenEXR | =2.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-18444 is a vulnerability in OpenEXR 2.3.0 that allows an out-of-bounds write, leading to an assertion failure or other unspecified impact.
The severity of CVE-2018-18444 is high with a CVSS score of 8.8.
CVE-2018-18444 affects OpenEXR 2.3.0 and possibly other versions.
To fix CVE-2018-18444, upgrade to OpenEXR version 2.4.0 or higher.
You can find more information about CVE-2018-18444 at the following references: [link1](https://github.com/openexr/openexr/issues/351), [link2](https://github.com/openexr/openexr/releases/tag/v2.4.0), [link3](https://usn.ubuntu.com/4148-1/).