Bug 2538024 (CVE-2026-59156)
| Summary: | CVE-2026-59156 OpenImageIO: OpenImageIO: Denial of Service via unbounded recursion in FITS header parsing | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | OSIDB Bzimport <bzimport> |
| Component: | vulnerability | Assignee: | Product Security <prodsec-ir-bot> |
| Status: | NEW --- | QA Contact: | |
| Severity: | medium | Docs Contact: | |
| Priority: | medium | ||
| Version: | unspecified | Keywords: | Security |
| Target Milestone: | --- | ||
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | --- | |
| Doc Text: |
A flaw was found in OpenImageIO, a toolset for reading, writing, and manipulating image files. A remote attacker could exploit this vulnerability by providing a specially crafted Flexible Image Transport System (FITS) stream. This stream, containing consecutive header blocks without the mandatory 'end' keyword, causes unbounded recursion in the FITS header parser. This repeated recursive parsing exhausts the application's memory stack, leading to a Denial of Service (DoS).
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 2539160, 2539161, 2539162 | ||
| Bug Blocks: | |||
|
Description
OSIDB Bzimport
2026-09-22 16:38:49 UTC
|