[CLSA-2026:1778760144] openexr: Fix of CVE-2026-41142
Type:
security
Severity:
Critical
Release date:
2026-05-14 19:08:19 UTC
Description:
- CVE-2026-41142: fix integer overflow in ImageChannel::resize() pixel count computation leading to heap out-of-bounds write via the OpenEXRUtil public API
Updated packages:
  • openexr-3.1.1-3.el9.tuxcare.els6.x86_64.rpm
    sha:c090dca784e59ba886bea25a652f41dc887177f09b94c9d0ea08aa84bb5ffaa1
  • openexr-devel-3.1.1-3.el9.tuxcare.els6.i686.rpm
    sha:9af5eb45a0ed6ad9f6d03428cadb46eb6c642d2c8ed1595c2815cefec4df33df
  • openexr-devel-3.1.1-3.el9.tuxcare.els6.x86_64.rpm
    sha:1219a5f8067b937dc5e410e8f158609f020df88148fce637c3519606a2fbb0e2
  • openexr-libs-3.1.1-3.el9.tuxcare.els6.i686.rpm
    sha:62128f286d6f21bae0883cc027768bb8573a0843fe241461fbf72ac340ef05c9
  • openexr-libs-3.1.1-3.el9.tuxcare.els6.x86_64.rpm
    sha:710d82a905428434b57a4bbb1b6589f534ab4564939258050248dab8a17e8b61
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.