Security News

Cybersecurity news aggregator

🔄
HIGH Updates Red Hat Errata

RHSA-2026:8869: Important: openexr security update

An integer overflow vulnerability (CVE-2026-27622, CVSS 7.8 HIGH) in OpenEXR allows arbitrary code execution via specially crafted EXR file processing. The affected versions are openexr before 3.2.6, 3.3.0 through 3.3.7, and 3.4.0 through 3.4.5. Red Hat has rated this update as Important and provides patched packages for RHEL 9.2; the upstream fixes are available in OpenEXR versions 3.2.6, 3.3.8, and 3.4.6.
Read Full Article →

Red Hat Product Errata RHSA-2026:8869 - Security Advisory Issued: 2026-04-20 Updated: 2026-04-20 RHSA-2026:8869 - Security Advisory Overview Updated Packages Synopsis Important: openexr security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for openexr is now available for Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description OpenEXR is an open-source high-dynamic-range floating-point image file format for high-quality image processing and storage. This document presents a brief overview of OpenEXR and explains concepts that are specific to this format. This package containes the binaries for OpenEXR. Security Fix(es): openexr: OpenEXR: Arbitrary code execution via integer overflow in EXR file processing (CVE-2026-27622) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux Server - AUS 9.2 x86_64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 x86_64 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2 aarch64 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2 s390x Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2 x86_64 Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.2 aarch64 Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.2 ppc64le Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.2 s390x Fixes BZ - 2444251 - CVE-2026-27622 openexr: OpenEXR: Arbitrary code execution via integer overflow in EXR file processing CVEs CVE-2026-27622 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux Server - AUS 9.2 SRPM openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48 x86_64 openexr-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: be3d07cddf5143de004074fb65186c5c63a4bb83559d9619a5f222d0a1a61125 openexr-debuginfo-3.1.1-2.el9_2.2.i686.rpm SHA-256: 64570012d50391acc4b2933e6255ad1fb4a85912b39e039b998795143568cf12 openexr-debuginfo-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 2dbf2542ca4c443897ceaae056adf933d31dbe3d0380d86d09e33ec419fefec5 openexr-debugsource-3.1.1-2.el9_2.2.i686.rpm SHA-256: 85aafcb755ea81f7a3c5994090fe1422f6cf3faa8dc494c1549380ccee28a5f8 openexr-debugsource-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 26aba285566a2b5bfd9af23cae1ce59de6d54e8da2372c7f9a733d422e274a6f openexr-libs-3.1.1-2.el9_2.2.i686.rpm SHA-256: b355ce4ba02863b9beed0ac04b0addd23258358429aa2abd98de8f2fbbe6ed2b openexr-libs-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 14335ca5fef85d1e3e7fc5ae37d554000e7d68d427d086f3e092a0665aa12b38 openexr-libs-debuginfo-3.1.1-2.el9_2.2.i686.rpm SHA-256: 11af397b8fa472db97422ffbf48a63603870a7bd3afa62f9fc14f2d455862954 openexr-libs-debuginfo-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: b0272ba43059be2a6e584c3129c142b6d8760a45c8cad78299a29180c3dcd533 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 SRPM openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48 ppc64le openexr-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 3a4e2e4b74a4ebfdcb741089829885f0db2963ae6bf35188015cb1fad1076003 openexr-debuginfo-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 2c11da91a25f3f7a98680df7998781aea3430f8a61362863057cfdb208e797a1 openexr-debugsource-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 672d5470f67c30a9180c627aa7c2f0f1abf843d16f66dccc04a2e77a47c308ab openexr-libs-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 858cfbd617657031e758a50f6bef50e91f0cf533022d2d7595768417e2138e41 openexr-libs-debuginfo-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 3ce98288d3543633b73e8e8ed9413a857236790d266e0f83e0a2e7fa2094b60e Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 SRPM openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48 x86_64 openexr-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: be3d07cddf5143de004074fb65186c5c63a4bb83559d9619a5f222d0a1a61125 openexr-debuginfo-3.1.1-2.el9_2.2.i686.rpm SHA-256: 64570012d50391acc4b2933e6255ad1fb4a85912b39e039b998795143568cf12 openexr-debuginfo-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 2dbf2542ca4c443897ceaae056adf933d31dbe3d0380d86d09e33ec419fefec5 openexr-debugsource-3.1.1-2.el9_2.2.i686.rpm SHA-256: 85aafcb755ea81f7a3c5994090fe1422f6cf3faa8dc494c1549380ccee28a5f8 openexr-debugsource-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 26aba285566a2b5bfd9af23cae1ce59de6d54e8da2372c7f9a733d422e274a6f openexr-libs-3.1.1-2.el9_2.2.i686.rpm SHA-256: b355ce4ba02863b9beed0ac04b0addd23258358429aa2abd98de8f2fbbe6ed2b openexr-libs-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 14335ca5fef85d1e3e7fc5ae37d554000e7d68d427d086f3e092a0665aa12b38 openexr-libs-debuginfo-3.1.1-2.el9_2.2.i686.rpm SHA-256: 11af397b8fa472db97422ffbf48a63603870a7bd3afa62f9fc14f2d455862954 openexr-libs-debuginfo-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: b0272ba43059be2a6e584c3129c142b6d8760a45c8cad78299a29180c3dcd533 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2 SRPM openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48 aarch64 openexr-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 95c62ca152a481f807385d26afebafc99bd9e4834e3364dd058402bfb6d66135 openexr-debuginfo-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 6c19f0398c0b20ad572ffbce0e46f15e488cb4b47b5f1481f972ee6cbb339bd0 openexr-debugsource-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 3e7564dfb746165f572a1d00a9ee90edaa6b73ba2182253faa7fb63ac45be57a openexr-libs-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 7ef068e7d990c3c6e11d1ca63ca6f4a3144aaf9ab2237c85554669f053386a38 openexr-libs-debuginfo-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 5d2d096271f2d2156bd44d8216e1f919d89da96d8c95db286a9fc90120aaf0d9 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2 SRPM openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48 s390x openexr-3.1.1-2.el9_2.2.s390x.rpm SHA-256: 9dcbb8093ff802c8d72560ba5112f7913ff9633f6b871980bf5390307018f3af openexr-debuginfo-3.1.1-2.el9_2.2.s390x.rpm SHA-256: e6f1fe7312c956f49f14f331dae3ab23917bcf9e45a113305c9bd47624b91759 openexr-debugsource-3.1.1-2.el9_2.2.s390x.rpm SHA-256: d8680d9f335d42ba7d44aad45ec38e1f4a89e5bf8db5644a79dee3f5bb5be0b6 openexr-libs-3.1.1-2.el9_2.2.s390x.rpm SHA-256: f848bf75c8c2c03703abb515fd0083f207ced7a2efab0b4069e499ce6604af08 openexr-libs-debuginfo-3.1.1-2.el9_2.2.s390x.rpm SHA-256: 33f5ccf054c8ea94c6386970a7d484233811eb785306bbd4123fdd704977f660 Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2 SRPM openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48 x86_64 openexr-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: be3d07cddf5143de004074fb65186c5c63a4bb83559d9619a5f222d0a1a61125 openexr-debuginfo-3.1.1-2.el9_2.2.i686.rpm SHA-256: 64570012d50391acc4b2933e6255ad1fb4a85912b39e039b998795143568cf12 openexr-debuginfo-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 2dbf2542ca4c443897ceaae056adf933d31dbe3d0380d86d09e33ec419fefec5 openexr-debugsource-3.1.1-2.el9_2.2.i686.rpm SHA-256: 85aafcb755ea81f7a3c5994090fe1422f6cf3faa8dc494c1549380ccee28a5f8 openexr-debugsource-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 26aba285566a2b5bfd9af23cae1ce59de6d54e8da2372c7f9a733d422e274a6f openexr-libs-3.1.1-2.el9_2.2.i686.rpm SHA-256: b355ce4ba02863b9beed0ac04b0addd23258358429aa2abd98de8f2fbbe6ed2b openexr-libs-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 14335ca5fef85d1e3e7fc5ae37d554000e7d68d427d086f3e092a0665aa12b38 openexr-libs-debuginfo-3.1.1-2.el9_2.2.i686.rpm SHA-256: 11af397b8fa472db97422ffbf48a63603870a7bd3afa62f9fc14f2d455862954 openexr-libs-debuginfo-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: b0272ba43059be2a6e584c3129c142b6d8760a45c8cad78299a29180c3dcd533 Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.2 SRPM openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48 aarch64 openexr-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 95c62ca152a481f807385d26afebafc99bd9e4834e3364dd058402bfb6d66135 openexr-debuginfo-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 6c19f0398c0b20ad572ffbce0e46f15e488cb4b47b5f1481f972ee6cbb339bd0 openexr-debugsource-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 3e7564dfb746165f572a1d00a9ee90edaa6b73ba2182253faa7fb63ac45be57a openexr-libs-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 7ef068e7d990c3c6e11d1ca63ca6f4a3144aaf9ab2237c85554669f053386a38 openexr-libs-debuginfo-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 5d2d096271f2d2156bd44d8216e1f919d89da96d8c95db286a9fc90120aaf0d9 Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.2 SRPM openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48 ppc64le openexr-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 3a4e2e4b74a4ebfdcb741089829885f0db2963ae6bf35188015cb1fad1076003 openexr-debuginfo-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 2c11da91a25f3f7a98680df7998781aea3430f8a61362863057cfdb208e797a1 openexr-debugsource-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 672d5470f67c30a9180c627aa7c2f0f1abf843d16f66dccc04a2e77a47c308ab openexr-libs-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 858cfbd617657031e758a50f6bef50e91f0cf533022d2d7595768417e2138e41 openexr-libs-d

Share this article