CVE-2020-11759
Published Apr 14, 2020
Last updated a year ago
Overview
- Description
- An issue was discovered in OpenEXR before 2.4.1. Because of integer overflows in CompositeDeepScanLine::Data::handleDeepFrameBuffer and readSampleCountForLineBlock, an attacker can write to an out-of-bounds pointer.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 5.5
- Impact score
- 3.6
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
- Severity
- MEDIUM
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:N/A:P
Weaknesses
- nvd@nist.gov
- CWE-190
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:openexr:openexr:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "57A8F73B-345B-48BD-8D9B-92AD24033265", "versionEndExcluding": "2.4.1" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "36D96259-24BD-44E2-96D9-78CE1D41F956" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*", "vulnerable": true, "matchCriteriaId": "7A5301BF-1402-4BE0-A0F8-69FBE79BC6D6" }, { "criteria": "cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*", "vulnerable": true, "matchCriteriaId": "23A7C53F-B80F-4E6A-AFA9-58EEA84BE11D" }, { "criteria": "cpe:2.3:o:canonical:ubuntu_linux:19.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A31C8344-3E02-4EB8-8BD8-4C84B7959624" }, { "criteria": "cpe:2.3:o:canonical:ubuntu_linux:20.04:*:*:*:lts:*:*:*", "vulnerable": true, "matchCriteriaId": "902B8056-9E37-443B-8905-8AA93E2447FB" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DEECE5FC-CACF-4496-A3E7-164736409252" }, { "criteria": "cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "07B237A9-69A3-4A9C-9DA0-4E06BD37AE73" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:apple:icloud:*:*:*:*:*:windows:*:*", "vulnerable": true, "matchCriteriaId": "5B3BB46F-F586-4A2B-91C6-4D3AA226B478", "versionEndExcluding": "7.20" }, { "criteria": "cpe:2.3:a:apple:icloud:*:*:*:*:*:windows:*:*", "vulnerable": true, "matchCriteriaId": "5DBDFC69-1F0F-40E9-833E-FBFB92DF0541", "versionEndExcluding": "11.3", "versionStartIncluding": "10.0" }, { "criteria": "cpe:2.3:a:apple:itunes:*:*:*:*:*:windows:*:*", "vulnerable": true, "matchCriteriaId": "B626717E-0DED-4C76-B92D-D58AB27EED01", "versionEndExcluding": "12.10.8" }, { "criteria": "cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "87D68071-5235-4B50-90F0-B55B0C668840", "versionEndExcluding": "13.6" }, { "criteria": "cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0639A5DE-4A59-4F10-A0E7-F6B933E44D47", "versionEndExcluding": "13.6" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2DA1C24E-B74D-4C8C-931D-AE35BFB4F0CC", "versionEndExcluding": "10.13.6", "versionStartIncluding": "10.13.0" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3E76BECE-0843-4B9F-90DE-7690764701B0", "versionEndExcluding": "10.14.6", "versionStartIncluding": "10.14.0" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4B5F6281-877C-491C-9C4A-C28C604FB422", "versionEndExcluding": "10.15.6", "versionStartIncluding": "10.15" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.13.6:-:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "297D2D0C-EA9D-4B2C-9357-D88DB6C7143A" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.13.6:security_update_2018-002:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0D845143-1B4D-478B-B83E-8F1664CBCAC3" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.13.6:security_update_2018-003:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "23C6DF6A-9A30-4F9E-BD9C-C19D8551C6DA" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.13.6:security_update_2019-001:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "754A2DF4-8724-4448-A2AB-AC5442029CB7" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.13.6:security_update_2019-002:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D392C777-1949-4920-B459-D083228E4688" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.13.6:security_update_2019-003:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "68B0A232-F2A4-4B87-99EB-3A532DFA87DA" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.13.6:security_update_2019-004:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0DF528F7-0F1E-4E55-A088-91327E3C360C" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.13.6:security_update_2019-005:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E222445A-D398-47C8-9639-4BAE36B69AA1" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.13.6:security_update_2019-006:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9425DAC8-038D-4B09-A074-3780AED912FA" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.13.6:security_update_2019-007:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8EA63C1C-1EEC-4961-A7B7-439D21293B99" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.13.6:security_update_2020-001:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B2F5D631-2306-4526-BEE5-22456D95ABAB" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.13.6:security_update_2020-002:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F79B7361-F2F2-4FA6-A27D-CC8F2D37A726" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.13.6:security_update_2020-003:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "09FA5087-C576-483F-B660-F9D155933CC8" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.14.6:-:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "693E7DAE-BBF0-4D48-9F8A-20DDBD4AAC0C" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.14.6:security_update_2019-001:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CFE26ECC-A2C2-4501-9950-510DE0E1BD86" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.14.6:security_update_2019-002:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "26108BEF-0847-4AB0-BD98-35344DFA7835" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.14.6:security_update_2019-004:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A369D48B-6A0A-47AE-9513-D5E2E6F30931" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.14.6:security_update_2019-005:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "510F8317-94DA-498E-927A-83D5F41AF54A" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.14.6:security_update_2019-006:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0D5D1970-6D2A-42CA-A203-42023D71730D" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.14.6:security_update_2019-007:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C68AE52B-5139-40A4-AE9A-E752DBF07D1B" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.14.6:security_update_2020-001:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0FD3467D-7679-479F-9C0B-A93F7CD0929D" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.14.6:security_update_2020-002:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D4C6098E-EDBD-4A85-8282-B2E9D9333872" }, { "criteria": "cpe:2.3:o:apple:mac_os_x:10.14.6:security_update_2020-003:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "518BB47B-DD76-4E8C-9F10-7EBC1E146191" }, { "criteria": "cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "888463CA-9C67-46B2-B197-DDD3A668F980", "versionEndExcluding": "13.4.8" }, { "criteria": "cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "494FA012-A268-42FC-B023-2A10817B1096", "versionEndExcluding": "6.2.8" } ], "operator": "OR" } ] } ]