๐Ÿ” CVE Alert

CVE-2026-43904

UNKNOWN 0.0

OpenImageIO: Softimage PIC RLE decoder heap buffer overflow โ€” longCount not clamped to image width

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to 3.0.18.0 and 3.1.13.0, softimageinput.cpp:469 (mixed RLE) and :345 (pure RLE) do not clamp the run length to remaining scanline width before writing pixels. The raw packet path (line 403) correctly clamps with std::min, but RLE paths skip this check. A crafted .pic file causes heap overflow up to 65535 bytes. This vulnerability is fixed in 3.0.18.0 and 3.1.13.0.

CWE CWE-787
Vendor academysoftwarefoundation
Product openimageio
Published May 14, 2026
Stay Ahead of the Next One

Get instant alerts for academysoftwarefoundation openimageio

Be the first to know when new unknown vulnerabilities affecting academysoftwarefoundation openimageio are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

AcademySoftwareFoundation / OpenImageIO
< 3.0.18.0 >= 3.1.4.0-beta, < 3.1.13.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/AcademySoftwareFoundation/OpenImageIO/security/advisories/GHSA-4499-j545-7q33