CVE-2024-55192: Openimageio
Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.
OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component OpenImageIO_v3_1_0::farmhash::inlined::Fetch64(char const*).
Affected products
- Openimageio Openimageio: version 3.1.0.0 only
Published 2025-01-23. Last modified 2026-06-17.