CVE-2026-34378 | AcademySoftwareFoundation OpenEXR up to 3.4.8 EXR File Parser generic_unpack integer overflow (GHSA-v76p-4qvv-vh4g)
A vulnerability labeled as problematic has been found in AcademySoftwareFoundation OpenEXR up to 3.4.8. This impacts the function generic_unpack of the component EXR File Parser. Executing a manipulation can lead to integer overflow.
This vulnerability is registered as CVE-2026-34378. It is possible to launch the attack remotely. No exploit is available.
The affected component should be upgraded.