CVE-2026-26981Disclosure(openexr / openexr)

LOWCVSS 6.5 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch openexr openexr systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In versions 3.3.0 through 3.3.6 and 3.4.0 through 3.4.4, a heap-buffer-overflow (OOB read) occurs in the `istream_nonparallel_read` function in `ImfContextInit.cpp` when parsing a malformed EXR file through a memory-mapped `IStream`. A signed integer subtraction produces a negative value that is implicitly converted to `size_t`, resulting in a massive length being passed to `memcpy`. Versions 3.3.7 and 3.4.5 contain a patch.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-195

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • openexr

Threat summary

  • Patch or workaround signal is available
  • 4 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 2d ago at 2 mentions (2026-02-24); latest day: 1
  • 4 total mentions across 3 days

Affected systems

Vendors
Products
openexr

Deep dive

Activity timeline4 mentions / 3d
01122Mentions · 2026-02-24: 2Mentions · 2026-03-17: 1Mentions · 2026-04-07: 1Patch / Workaround · 2026-03-17: 1Technical Details · 2026-02-24: 1Technical Details · 2026-03-17: 102-2403-1704-07
Signal classification3 categories
Disclosure
250.0%
General
125.0%
Patch
125.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-02-242
Disclosure1General1
2026-03-171
Patch1
2026-04-071
Disclosure1
Full discourse4 posts
  • Nick Stocks@mistaike_ai
    Disclosure

    We’re seeing CVEs like CVE-2026-26981, CVE-2026-5602, and CVE-2026-5603 already flagged by our one-day scanner before most teams even notice them. Here’s the uncomfortable truth: Some of these aren’t sophisticated breaches. They’re basic failures. 🧵

    Post summary

    The tweet announces early detection of several 2026 CVEs by a scanner, but provides no exploit, patch, or technical details.

    1000041
    6 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-26981 OpenEXR Heap Buffer Overflow Vulnerability in Versions 3.3.0-3.3.6 and 3.4.0-3.4.4 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-26981

    Post summary

    The text announces a heap buffer overflow vulnerability in OpenEXR versions 3.3.0-3.3.6 and 3.4.0-3.4.4, providing basic technical details but no PoC, exploit, or patch information.

    0000160
    4.0K followersView on X
  • ThreatCluster@threatcluster
    Patch

    Fedora releases security updates for MinGW OpenEXR, addressing CVE-2026-26981 (DoS via heap-buffer overflow) and CVE-2026-27622 (RCE via integer overflow). Update to 3.3.8 or 3.4.6. #Vulnerability https://threatcluster.io/cluster/critical-denial-of-service-vulnerabilities-in-fedoras-mingw--a8c7c9f9

    Post summary

    Fedora announced security updates for MinGW OpenEXR, addressing two CVEs—one causing DoS via heap‑buffer overflow and another enabling RCE via integer overflow—by upgrading to specific patched versions.

    0000055
    103 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-26981 OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In versions 3.3.0 thr… https://www.cve.org/CVERecord?id=CVE-2026-26981

    Post summary

    The snippet merely references CVE‑2026‑26981 and links to its CVE record, without providing any technical, exploit, or mitigation details.

    00000105
    56.5K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appopenexropenexr---

Explore more