CVE-2023-3430: Openimageio

High severity, CVSS 7.5. EPSS: 1.2% chance of exploitation in the next 30 days.

A vulnerability was found in OpenImageIO, where a heap buffer overflow exists in the src/gif.imageio/gifinput.cpp file. This flaw allows a remote attacker to pass a specially crafted file to the application, which triggers a heap-based buffer overflow and could cause a crash, leading to a denial of service.

Affected products

Published 2023-12-18. Last modified 2026-06-17.