Openexr

Latest version: v3.3.2

Safety actively analyzes 701475 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 4 of 19

3.24.9

* [1694](https://github.com/AcademySoftwareFoundation/openexr/pull/1694)

3.14

* [1617](https://github.com/AcademySoftwareFoundation/openexr/pull/1617)

3.3.0

* [1535](https://github.com/AcademySoftwareFoundation/openexr/pull/1535)
Add Scorecard GitHub Action
* [1515](https://github.com/AcademySoftwareFoundation/openexr/pull/1515)

3.2.4

Patch release that fixes handling of dwa compression in OpenEXRCore library.

This release also removes the unused CMake option
``OPENEXR_INSTALL_EXAMPLES``, and fixes some other compiler warnings.

Merged Pull Requests

* [1684](https://github.com/AcademySoftwareFoundation/openexr/pull/1684)
Fix typo causing prefix len to be wrong
* [1668](https://github.com/AcademySoftwareFoundation/openexr/pull/1668)
Improve workflow filters
* [1666](https://github.com/AcademySoftwareFoundation/openexr/pull/1666)
🐛 Remove the OPENEXR_INSTALL_EXAMPLES CMake option
* [1662](https://github.com/AcademySoftwareFoundation/openexr/pull/1662)
Initialize _ySampling to 0
* [1659](https://github.com/AcademySoftwareFoundation/openexr/pull/1659)
Use size_t as iterator instead of int

3.2.3

Patch release with various build/bug/documentation fixes:

* Fix `bswap` on NetBSD
* Fix issue with decompressing fp32 dwa files
* Support cmake config for `libdeflate`
* updated security policy
* miscelleneous website improvements

This release also addresses:

* OSS-fuzz [66676](https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=66676)
Null-dereference in Imf_3_3::realloc_deepdata
* OSS-fuzz [66612](https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=66612)
Null-dereference in Imf_3_3::realloc_deepdata

Merged Pull Requests

* [1653](https://github.com/AcademySoftwareFoundation/openexr/pull/1653)
Allow partial chunk tables
* [1652](https://github.com/AcademySoftwareFoundation/openexr/pull/1652)
Fix 0 samples in deep data
* [1651](https://github.com/AcademySoftwareFoundation/openexr/pull/1651)
Add recent releases to website news
* [1650](https://github.com/AcademySoftwareFoundation/openexr/pull/1650)
Fix memory leaks in exrstdattr and example code (1649)
* [1647](https://github.com/AcademySoftwareFoundation/openexr/pull/1647)
Remove -Dsonar.login from sonar-scanner command line
* [1643](https://github.com/AcademySoftwareFoundation/openexr/pull/1643)
Use component for python
* [1640](https://github.com/AcademySoftwareFoundation/openexr/pull/1640)
Fix version tag for python wheel sdist
* [1637](https://github.com/AcademySoftwareFoundation/openexr/pull/1637)
Add instructions for creating signed releases/tags
* [1636](https://github.com/AcademySoftwareFoundation/openexr/pull/1636)
Do synk scans weekly on Sunday mornings
* [1635](https://github.com/AcademySoftwareFoundation/openexr/pull/1635)
check and control reduceMemory and reduceTime in stream mode
* [1634](https://github.com/AcademySoftwareFoundation/openexr/pull/1634)
adds a shortcut to avoid reconstructing every call
* [1633](https://github.com/AcademySoftwareFoundation/openexr/pull/1633)
Fix install of symlink
* [1631](https://github.com/AcademySoftwareFoundation/openexr/pull/1631)
Remove snyk-scan-pr.yml
* [1629](https://github.com/AcademySoftwareFoundation/openexr/pull/1629)
Build python wheels via scikit-build-core
* [1626](https://github.com/AcademySoftwareFoundation/openexr/pull/1626)

3.2.2

Patch release that addresses
[CVE-2023-5841](https://takeonme.org/cves/CVE-2023-5841.html).

Note that this bug is present in the C++ API (since v3.1.0), although
it is in a routine that is predominantly used for development and
testing. It is not likely to appear in production code.

This release also addresses:

* OSS-fuzz [66491](https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=66491)
Out-of-memory in openexr_exrcorecheck_fuzzer
* OSS-fuzz [66489](https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=66489)
Null-dereference in `Imf_3_3::realloc_deepdata`

Merged Pull Requests

* [1632](https://github.com/AcademySoftwareFoundation/openexr/pull/1632)
adjust checks for core to better match c++ checks
* [1630](https://github.com/AcademySoftwareFoundation/openexr/pull/1630)
fix issue with unpacking sample counts
* [1627](https://github.com/AcademySoftwareFoundation/openexr/pull/1627)
Fix CVE 2023 5841

Page 4 of 19

© 2025 Safety CLI Cybersecurity Inc. All Rights Reserved.