CVE-2024-55194: Critical severity openimageio vulnerability
Published Jan 23, 2025
·Updated
OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component /OpenImageIO/fmath.h.
Affected Software
2 affected components
Openimageio Openimageio
Openimageio Openimageio=3.1.0.0-dev
Event History
Jan 23, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-55194?
CVE-2024-55194 is classified as a critical vulnerability due to the potential for exploitation via heap overflow.
2
How do I fix CVE-2024-55194?
To fix CVE-2024-55194, update to a patched version of OpenImageIO that resolves heap overflow issues.
3
What are the risks associated with CVE-2024-55194?
The risks associated with CVE-2024-55194 include potential remote code execution and system compromise due to heap overflow.
4
Which versions of OpenImageIO are affected by CVE-2024-55194?
CVE-2024-55194 affects OpenImageIO version 3.1.0.0-dev.
5
Is CVE-2024-55194 actively being exploited?
As of now, there are no confirmed active exploitations of CVE-2024-55194 reported in the wild.