tinyexr 0.9.5 ha un heap-based buffer over-lettura tramite tinyexr :: ReadChannelInfo in tinyexr.h. |
https://github.com/ChijinZ/security_advisories/tree/master/tinyexr_7953aea https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-12064 |
Vulnerabilità: CVE-2018-12064
