CVE-2022-38529
Published Sep 6, 2022tinyexr commit 0647fb3 was discovered to contain a heap-buffer overflow via the component rleUncompress.
Loading current evidence
Historical archive search
Search decades of CVEs by regex, severity, date, CWE, vendor/product tags, KEV, PoC, and other evidence.
Results
13 results · Sorted by Highest Buzz score first
tinyexr commit 0647fb3 was discovered to contain a heap-buffer overflow via the component rleUncompress.
In tinyexr 1.0.1, there is a heap-based buffer over-read in tinyexr::DecodePixelData.
tinyexr 0.9.5 was discovered to contain an array index error in the tinyexr::DecodeEXRImage component, which can lead to a denial of service (DOS).
tinyexr commit 0.9.5 was discovered to contain an array index error in the tinyexr::SaveEXR component, which can lead to a denial of service (DOS).
tinyexr 0.9.5 has a integer overflow over-write in tinyexr::DecodePixelData in tinyexr.h, related to OpenEXR code.
An attempted excessive memory allocation was discovered in the function tinyexr::AllocateImage in tinyexr.h in tinyexr v0.9.5. Remote attackers could leverage this vulnerability t…
tinyexr 0.9.5 has a segmentation fault in the wav2Decode function.
tinyexr 0.9.5 has an assertion failure in DecodePixelData in tinyexr.h.
tinyexr 0.9.5 has an assertion failure in ComputeChannelLayout in tinyexr.h.
tinyexr 0.9.5 has a heap-based buffer over-read in LoadEXRImageFromMemory in tinyexr.h.
tinyexr 0.9.5 has a memory leak in ParseEXRHeaderFromMemory in tinyexr.h.
tinyexr 0.9.5 has a heap-based buffer over-read in tinyexr::DecodePixelData in tinyexr.h, related to OpenEXR code.
tinyexr 0.9.5 has a heap-based buffer over-read via tinyexr::ReadChannelInfo in tinyexr.h.
Every filter state lives in the URL so you can bookmark, share, and crawl exact historical slices instead of a client-only search session.
Buzz order uses the latest all-time evidence snapshot, refreshed every two hours. Evidence-bearing CVEs rank first; records without a snapshot continue newest-first.