Back Linuxsecurity Fedora 42 mingw-openexr Significant Buffer Overflow DoS CVE-2026
MinGW Windows openexr library. Update Information : Update to openexr-3.4.6 resp 3.3.8.
MinGW Windows openexr library.
Update to openexr-3.4.6 resp 3.3.8.
* Sun Mar 8 2026 Sandro Mani - 3.3.8-1 - Update to 3.3.8
* Sun Mar 8 2026 Sandro Mani - 3.3.8-1 - Update to 3.3.8
[ 1 ] Bug #2442257 - CVE-2026-26981 mingw-openexr: OpenEXR: Denial of Service via heap-buffer-overflow when parsing a malformed EXR file [fedora-all] [ 2 ] Bug #2444289 - CVE-2026-27622 mingw-openexr: OpenEXR: Arbitrary code execution via integer overflow in EXR file processing [fedora-all]
[ 1 ] Bug #2442257 - CVE-2026-26981 mingw-openexr: OpenEXR: Denial of Service via heap-buffer-overflow when parsing a malformed EXR file [fedora-all] [ 2 ] Bug #2444289 - CVE-2026-27622 mingw-openexr: OpenEXR: Arbitrary code execution via integer overflow in EXR file processing [fedora-all]
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-45845d11c3' at the command line. For more information, refer to the dnf documentation available at
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-45845d11c3' at the command line. For more information, refer to the dnf documentation available at
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
