CVE-2025-64181 | AcademySoftwareFoundation OpenEXR up to 3.3.5/3.4.2 EXR File Parser openexr_exrcheck_fuzzer uninitialized variable (GHSA-3h9h-qfvw-98hq / Nessus ID 274729)
A vulnerability classified as problematic was found in AcademySoftwareFoundation OpenEXR up to 3.3.5/3.4.2. The impacted element is the function openexr_exrcheck_fuzzer of the component EXR File Parser. The manipulation results in use of uninitialized variable.
This vulnerability is known as CVE-2025-64181. Attacking locally is a requirement. No exploit is available.
Upgrading the affected component is advised.