Search CVE reports


Toggle filters

781 – 790 of 36525 results

Status is adjusted based on your filters.


CVE-2026-43909

Medium priority
Needs evaluation

OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, a signed 32-bit integer overflow in the loop index expression i * 4...

1 affected package

openimageio

Package 24.04 LTS
openimageio Needs evaluation
Show less packages

CVE-2026-43908

Medium priority
Needs evaluation

OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, a signed 32-bit integer overflow in the pixel-loop index expression...

1 affected package

openimageio

Package 24.04 LTS
openimageio Needs evaluation
Show less packages

CVE-2026-43907

Medium priority
Needs evaluation

OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, a signed integer overflow in QueryRGBBufferSizeInternal()...

1 affected package

openimageio

Package 24.04 LTS
openimageio Needs evaluation
Show less packages

CVE-2026-43906

Medium priority
Needs evaluation

OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, a heap-based buffer overflow in the HEIF decoder of...

1 affected package

openimageio

Package 24.04 LTS
openimageio Needs evaluation
Show less packages

CVE-2026-43905

Medium priority
Needs evaluation

OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, jpeg2000input.cpp:395 computes buffer size as const int bufsize = w...

1 affected package

openimageio

Package 24.04 LTS
openimageio Needs evaluation
Show less packages

CVE-2026-43904

Medium priority
Needs evaluation

OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, softimageinput.cpp:469 (mixed RLE) and :345 (pure RLE) do not clamp...

1 affected package

openimageio

Package 24.04 LTS
openimageio Needs evaluation
Show less packages

CVE-2026-43903

Medium priority
Needs evaluation

OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, sgiinput.cpp:265,274 use OIIO_DASSERT for bounds checking in the RLE...

1 affected package

openimageio

Package 24.04 LTS
openimageio Needs evaluation
Show less packages

CVE-2026-46470

Medium priority
Fixed

An issue was discovered in GStreamer gst-plugins-good before 1.28.2. When parsing MP4 audio tracks, the isomp4 plugin's qtdemux_audio_caps function does not sufficiently validate atom data before performing division operations,...

1 affected package

gst-plugins-good1.0

Package 24.04 LTS
gst-plugins-good1.0 Fixed
Show less packages

CVE-2026-46469

Medium priority
Fixed

An issue was discovered in GStreamer gst-plugins-good before 1.28.2. When parsing MP4 audio tracks, the isomp4 plugin's qtdemux_parse_trak function does not sufficiently validate atom data before performing division operations,...

1 affected package

gst-plugins-good1.0

Package 24.04 LTS
gst-plugins-good1.0 Fixed
Show less packages

CVE-2026-44544

Medium priority

Not in release

gittuf is a platform-agnostic Git security system. Prior to 0.14.0, an attacker with push access to gittuf's Reference State Log (RSL) can roll back the current policy to any previous policy trusted by the current set of root...

1 affected package

gittuf

Package 24.04 LTS
gittuf Not in release
Show less packages