Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 04 May 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 03 May 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Academysoftwarefoundation
Academysoftwarefoundation openimageio |
|
| Vendors & Products |
Academysoftwarefoundation
Academysoftwarefoundation openimageio |
Fri, 01 May 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in AcademySoftwareFoundation OpenImageIO up to 3.2.0.1-dev. This vulnerability affects unknown code of the file src/dds.imageio/ddsinput.cpp of the component DDS Image Handler. The manipulation results in out-of-bounds write. The attack needs to be approached locally. The exploit is now public and may be used. The patch is identified as 94ec2deec3e3bf2f2e2ff84d008e27425d626fe2. Applying a patch is advised to resolve this issue. | |
| Title | AcademySoftwareFoundation OpenImageIO DDS Image ddsinput.cpp out-of-bounds write | |
| First Time appeared |
Openimageio
Openimageio openimageio |
|
| Weaknesses | CWE-119 CWE-787 |
|
| CPEs | cpe:2.3:a:openimageio:openimageio:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Openimageio
Openimageio openimageio |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-05-04T16:14:54.523Z
Reserved: 2026-05-01T07:00:25.609Z
Link: CVE-2026-7582
Updated: 2026-05-04T16:14:47.280Z
Status : Deferred
Published: 2026-05-01T14:16:23.403
Modified: 2026-05-01T15:26:24.553
Link: CVE-2026-7582
No data.
OpenCVE Enrichment
Updated: 2026-05-03T21:32:39Z