CVE-2020-11762 | OpenEXR up to 2.4.0 Compression ImfDwaCompressor.cpp uncompress out-of-bounds (USN-4339-1)
A vulnerability classified as critical has been found in OpenEXR up to 2.4.0. Affected is the function DwaCompressor::uncompress of the file ImfDwaCompressor.cpp of the component Compression Handler. The manipulation leads to out-of-bounds read.
This vulnerability is traded as CVE-2020-11762. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.