PT-2026-36354 · Academy Software Foundation · Openimageio

Biniam

·

Published

2026-05-01

·

Updated

2026-05-01

·

CVE-2026-7582

CVSS v3.1

5.3

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions AcademySoftwareFoundation OpenImageIO versions prior to 3.2.0.1-dev
Description An out-of-bounds write issue exists within the DDS Image Handler component, specifically affecting the src/dds.imageio/ddsinput.cpp file. This flaw requires local access to be exploited.
Recommendations Apply patch 94ec2deec3e3bf2f2e2ff84d008e27425d626fe2 to resolve the issue.

Exploit

Fix

Memory Corruption

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2026-7582

Affected Products

Openimageio