CVE-2026-59184 | Academy Software Foundation OpenEXR up to 3.2.10/3.3.12/3.4.13 FlatHalfChannel FlatHalfChannel::row dataWindow.min use after free
A vulnerability was found in Academy Software Foundation OpenEXR up to 3.2.10/3.3.12/3.4.13. It has been declared as problematic. Affected by this vulnerability is the function FlatHalfChannel::row of the component FlatHalfChannel. The manipulation of the argument dataWindow.min results in use after free.
This vulnerability is reported as CVE-2026-59184. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More