🛡️ CVE-2026-44663 on Ubuntu — openexr
Description
OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. In versions 3.4.0 through 3.4.11, an integer overflow in ht_undo_impl() in src/lib/OpenEXRCore/internal_ht.cpp leads to a heap-buffer overflow when decoding a crafted HTJ2K-compressed EXR file. decode->channels[i].width (int32_t) is multiplied by bytes_per_element in 32-bit signed arithmetic. With large widths (e.g., >= 536870912 for FLOAT data), this overflows, producing a corrupted offset that is later used for pointer arithmetic and can cause a heap out-of-bounds write. The same unchecked multiplication pattern appears in two other HTJ2K paths (bytes-per-line accumulation and pixel-line pointer advancement). As with related CVE-2026-34378 through CVE-2026-34589 fixes in other codecs, validating only after the multiplication is too late because the value may already be overflowed. This issue has been fixed in version 3.4.12.
Distribution advisory
This page covers CVE-2026-44663 as tracked by Ubuntu, for the package openexr. No fixed version has been recorded for this distribution yet.
How this vulnerability can be exploited
This issue can be reached with local access to the system, attack complexity is low, an attacker needs no privileges on the target. A user must be tricked into taking some action. The scope is unchanged, so the impact stays within the vulnerable component. Rated impact: confidentiality none, integrity high, availability high.
Affected software
UBUNTU-CVE-2026-44663 is recorded against 1 package.
- openexr
Timeline and source
Published on 18 June 2026 and last revised on 29 June 2026. No public exploit is currently recorded for this entry. Record sourced from OSV.
References
ubuntu.com (Report)
www.cve.org (Report)
github.com (Report)
github.com (Report)
github.com (Report)
Details
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H
Affected Packages
| Software | From version | Fixed in |
|---|---|---|
| openexr | — | — |
References
Similar Threats
- Unknown ALSA-2026:38498
- Unknown ALSA-2026:38499
- Unknown ALSA-2026:19146
- Unknown ALSA-2026:19359
- Unknown ALSA-2026:15887
More UBUNTU CVE 2026 advisories
Browse all of UBUNTU CVE 2026 in the advisory index.
- UBUNTU-CVE-2026-44628
- UBUNTU-CVE-2026-44631
- UBUNTU-CVE-2026-44636
- UBUNTU-CVE-2026-44637
- UBUNTU-CVE-2026-44638
- UBUNTU-CVE-2026-44656
- UBUNTU-CVE-2026-44660
- UBUNTU-CVE-2026-44662
- UBUNTU-CVE-2026-44673
- UBUNTU-CVE-2026-44681
- UBUNTU-CVE-2026-44687
- UBUNTU-CVE-2026-44688
- UBUNTU-CVE-2026-44690
- UBUNTU-CVE-2026-44691
- UBUNTU-CVE-2026-44699
- UBUNTU-CVE-2026-44705
Vulnerability Monitoring
Track new vulnerabilities in openexr
UBUNTU-CVE-2026-44663 is rated CVSS 6.1 Medium. BotEraser monitors your WordPress installation and notifies you when software you use appears in our vulnerability database.
Set Up Free Alerts →No credit card required · Results in minutes
ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.