Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-23375 | OpenEXR Out-Of-Memory via Unbounded File Header Values |
Github GHSA |
GHSA-x22w-82jp-8rvf | OpenEXR Out-Of-Memory via Unbounded File Header Values |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 14 Aug 2025 04:30:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:openexr:openexr:3.3.2:*:*:*:*:*:*:* | |
| Metrics |
cvssV3_1
|
cvssV3_1
|
Tue, 12 Aug 2025 21:15:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Openexr
Openexr openexr |
|
| Vendors & Products |
Openexr
Openexr openexr |
Sat, 02 Aug 2025 09:15:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
threat_severity
|
cvssV3_1
|
Sat, 02 Aug 2025 02:15:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 02 Aug 2025 01:45:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In version 3.3.2, applications trust unvalidated dataWindow size values from file headers, which can lead to excessive memory allocation and performance degradation when processing malicious files. This is fixed in version 3.3.3. | |
| Title | OpenEXR's Unbounded File Header Values can Lead to Out-Of-Memory Errors | |
| Weaknesses | CWE-770 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-08-01T17:09:00.696Z
Reserved: 2025-05-15T16:06:40.942Z
Link: CVE-2025-48074
Updated: 2025-08-01T17:08:51.656Z
Status : Analyzed
Published: 2025-08-01T17:15:52.193
Modified: 2025-08-13T19:18:13.987
Link: CVE-2025-48074
OpenCVE Enrichment
Updated: 2025-08-12T21:05:49Z
EUVD
Github GHSA