[CLSA-2026:1778756042] openexr: Fix of CVE-2026-41142
Type:
security
Severity:
Critical
Release date:
2026-05-14 19:03:02 UTC
Description:
- CVE-2026-41142: fix integer overflow in ImageChannel::resize() pixel count computation leading to heap out-of-bounds write via the OpenEXRUtil public API
Updated packages:
  • openexr-3.1.1-3.el9.tuxcare.els6.x86_64.rpm
    sha:910bb1e1eecaa6791c131a78866c7c30e5d4c9a42004cbcd9ebc50b13c48b5c0
  • openexr-devel-3.1.1-3.el9.tuxcare.els6.i686.rpm
    sha:01f698de9e923ca41d06b4f04cbbeb8c26139fddcd66fb598f600110e7ea4715
  • openexr-devel-3.1.1-3.el9.tuxcare.els6.x86_64.rpm
    sha:46267d8d0a0cfc2b5626258042a5dfad6b4a4898a66e2c02f347f6ef60fa0fd3
  • openexr-libs-3.1.1-3.el9.tuxcare.els6.i686.rpm
    sha:0ba8ec4d8eb594c120b3db7855f00c8c92de331aaafbd9d79aebaec635a09397
  • openexr-libs-3.1.1-3.el9.tuxcare.els6.x86_64.rpm
    sha:174a46e32462f173576277471e65f7a719d813e565995b7ecd10d4bb6b3ffb10
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.