CVE ID : CVE-2025-48073

Published : July 31, 2025, 9:15 p.m. | 3 hours, 11 minutes ago

Description : OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In version 3.3.2, when reading a deep scanline image with a large sample count in reduceMemory mode, it is possible to crash a target application with a NULL pointer dereference in a write operation. This is fixed in version 3.3.3.

Severity: 0.0 | NA

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE ID : CVE-2025-48072

Published : July 31, 2025, 9:15 p.m. | 3 hours, 11 minutes ago

Description : OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. Version 3.3.2 is vulnerable to a heap-based buffer overflow during a read operation due to bad pointer math when decompressing DWAA-packed scan-line EXR files with a maliciously forged chunk. This is fixed in version 3.3.3.

Severity: 0.0 | NA

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

Wangle is a library that makes it easy to build protocols, application clients, and application servers. The post Wangle –…

The DistroWatch news feed is brought to you by TUXEDO COMPUTERS. 4MLinux, an independently-developed mini distribution with JWM as the preferred window manager, has been updated to version 49.0. The new release brings a large number of updates, including X.Org Server 21.1.16, JWM 2.4.6, GTK 4.18.5, ALSA 1.2.14, Tor 0.4.8.16, PCManFM 1.4.0, OpenSSH 10.0p1 with OpenSSL 3.5.0, mpv 0.40.0….

goose is an on-machine AI agent, capable of automating complex development tasks from start to finish. More than just code…

Use this desktop migration checklist to ensure no important applications, files, or settings are overlooked when rolling out a new…