[Bug 1206691] VUL-0: CVE-2022-43601: openimageio: heap buffer overflow due to ImageOutput
https://bugzilla.suse.com/show_bug.cgi?id=1206691 https://bugzilla.suse.com/show_bug.cgi?id=1206691#c1 Hans-Peter Jansen <hp.jansen@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- CC| |hp.jansen@suse.com --- Comment #1 from Hans-Peter Jansen <hp.jansen@suse.com> --- Hi Stoyan, for the record, I just SR'ed 2.4.6.0, that has must of your reported vulnerabilities fixed. This with commit 209c1bf on OIIO master branch: IFF output safety (#3676), and as such is contained in the 2.4.6.0 release. The project prepares a new release 2.4.6.1, that comes with the missing fixes. Please forgive me, if I don't react on the other reposts specifically. I will try to supply the next release as soon as it is available! -- You are receiving this mail because: You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@suse.com