Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

OpenEXR library on Root vulnerable to data corruption

ROOT-OS-DEBIAN-12-CVE-2024-31047
Summary

The OpenEXR library used by Root is vulnerable to data corruption, which can lead to incorrect or misleading results in image processing. This affects Root users who rely on OpenEXR for image handling. Update your Root system to the latest version to address this issue.

What to do
  • Update rootio-openexr to version 3.1.5-5.root.io.6.
Affected software
VendorProductAffected versionsFix available
– rootio-openexr <= 3.1.5-5.root.io.6 3.1.5-5.root.io.6
Original title
CVE-2024-31047 in rootio-openexr - Patched by Root
Original description
Root has patched CVE-2024-31047 in the rootio-openexr package for Root:Debian:12. Multiple fixed versions available.
Published: 6 Mar 2026 · Updated: 6 Mar 2026 · First seen: 6 Mar 2026