CVE-2022-43603

CVSS V2 None CVSS V3 None
Description
A denial of service vulnerability exists in the ZfileOutput::close() functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafted ImageOutput Object can lead to denial of service. An attacker can provide a malicious file to trigger this vulnerability.
Overview
  • CVE ID
  • CVE-2022-43603
  • Assigner
  • talos-cna@cisco.com
  • Vulnerability Status
  • Undergoing Analysis
  • Published Version
  • 2022-12-22T22:15:16
  • Last Modified Date
  • 2023-04-11T04:16:05
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:openimageio_project:openimageio:2.4.4.2:*:*:*:*:*:*:* 1 OR
History
Created Old Value New Value Data Type Notes
2022-12-22 23:15:39 Added to TrackCVE
2022-12-22 23:15:40 Weakness Enumeration new
2022-12-23 04:15:34 2022-12-23T03:31:02 CVE Modified Date updated
2022-12-23 04:15:34 Received Awaiting Analysis Vulnerability Status updated
2022-12-23 04:15:38 CVSS V3 information new
2022-12-27 21:15:23 Awaiting Analysis Undergoing Analysis Vulnerability Status updated
2022-12-27 21:15:24 CVSS V3 information new
2022-12-28 16:17:01 2022-12-28T15:32:28 CVE Modified Date updated
2022-12-28 16:17:01 Undergoing Analysis Analyzed Vulnerability Status updated
2022-12-28 16:17:04 CPE Information updated
2022-12-28 16:17:05 CVSS V3 information new
2023-01-01 08:14:34 2023-01-01T07:15:10 CVE Modified Date updated
2023-01-01 08:14:34 Analyzed Modified Vulnerability Status updated
2023-01-01 08:14:34 References updated
2023-01-01 08:14:34 CVSS V3 information new
2023-01-05 19:15:54 Modified Undergoing Analysis Vulnerability Status updated
2023-01-05 19:15:57 CVSS V3 information new
2023-01-06 14:16:53 2023-01-06T14:07:15 CVE Modified Date updated
2023-01-06 14:16:53 Undergoing Analysis Analyzed Vulnerability Status updated
2023-01-06 14:16:56 CVSS V3 information new
2023-02-01 19:14:19 2023-02-01T18:15:10 CVE Modified Date updated
2023-02-01 19:14:19 Analyzed Undergoing Analysis Vulnerability Status updated
2023-02-01 19:14:20 CVSS V3 information new
2023-02-06 18:13:57 CVSS V3 information new
2023-02-28 16:13:23 2023-02-28T15:36:58 CVE Modified Date updated
2023-02-28 16:13:23 Undergoing Analysis Analyzed Vulnerability Status updated
2023-02-28 16:13:23 CVSS V3 information new
2023-04-04 22:16:35 Analyzed Undergoing Analysis Vulnerability Status updated
2023-04-04 22:16:36 CVSS V3 information new
2023-04-11 07:13:19 2023-04-11T04:16:05 CVE Modified Date updated
2023-04-11 07:13:20 CVSS V3 information new