Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:7678 - Security Advisory
Issued:
2026-04-13
Updated:
2026-04-13

RHSA-2026:7678 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: openexr security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for openexr is now available for Red Hat Enterprise Linux 10.0 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

OpenEXR is an open-source high-dynamic-range floating-point image file format for high-quality image processing and storage. This document presents a brief overview of OpenEXR and explains concepts that are specific to this format. This package containes the binaries for OpenEXR.

Security Fix(es):

  • openexr: OpenEXR: Arbitrary code execution via integer overflow in EXR file processing (CVE-2026-27622)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 - Extended Update Support 10.0 x86_64
  • Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 10.0 s390x
  • Red Hat Enterprise Linux for Power, little endian - Extended Update Support 10.0 ppc64le
  • Red Hat Enterprise Linux for ARM 64 - Extended Update Support 10.0 aarch64
  • Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support 10.0 x86_64
  • Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support 10.0 ppc64le
  • Red Hat CodeReady Linux Builder for IBM z Systems - Extended Update Support 10.0 s390x
  • Red Hat CodeReady Linux Builder for ARM 64 - Extended Update Support 10.0 aarch64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 10.0 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 10.0 s390x
  • Red Hat Enterprise Linux for Power, little endian - 4 years of support 10.0 ppc64le
  • Red Hat Enterprise Linux for x86_64 - 4 years of updates 10.0 x86_64

Fixes

  • BZ - 2444251 - CVE-2026-27622 openexr: OpenEXR: Arbitrary code execution via integer overflow in EXR file processing

CVEs

  • CVE-2026-27622

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 - Extended Update Support 10.0

SRPM
openexr-3.1.10-8.el10_0.1.src.rpm SHA-256: ac18836a8e9111893cd62050d2706c33bc71ce3e5c9c301799831352350ddc24
x86_64
openexr-3.1.10-8.el10_0.1.x86_64.rpm SHA-256: f24e0b5a566be548d97c34e32f348b99ea0c699fb359e5fac926a30e4786d4c7
openexr-debuginfo-3.1.10-8.el10_0.1.x86_64.rpm SHA-256: ce720438b9f8acea6a8a2210e1669c51cb8c882da07c3f49a9a7c9ae803a3514
openexr-debugsource-3.1.10-8.el10_0.1.x86_64.rpm SHA-256: d26d4e78879fb3bc41d8a9a84be9e0493bd44d82cf7a867650bb3d2c4f6b96e9
openexr-libs-3.1.10-8.el10_0.1.x86_64.rpm SHA-256: 510b50e73afd593e46b962e853f080026c331bdf8e402ebd5533698c3b158452
openexr-libs-debuginfo-3.1.10-8.el10_0.1.x86_64.rpm SHA-256: 7df031bc39fd9ae9f7b83b45045cc9c96fba493ec7be512532ac0261602bd5ab

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 10.0

SRPM
openexr-3.1.10-8.el10_0.1.src.rpm SHA-256: ac18836a8e9111893cd62050d2706c33bc71ce3e5c9c301799831352350ddc24
s390x
openexr-3.1.10-8.el10_0.1.s390x.rpm SHA-256: a76bfe084d0a393d7e58c898f37d9991dbba8f9cec0a47291ee84f9e8d0fde04
openexr-debuginfo-3.1.10-8.el10_0.1.s390x.rpm SHA-256: 5dbebea9584eb3758a736a1ca4c08d5f2604c6f4b5879acd334a6adf172b3532
openexr-debugsource-3.1.10-8.el10_0.1.s390x.rpm SHA-256: 25198b92be565dbf03cef914622fefdb90ce79cb19d118e30eb301e02497ebe4
openexr-libs-3.1.10-8.el10_0.1.s390x.rpm SHA-256: 063873d04d79797404f25fd6770659116c69dfa2818bbe9ba8ae2ddfaa74aa56
openexr-libs-debuginfo-3.1.10-8.el10_0.1.s390x.rpm SHA-256: 9710f1941475bca2762c87c186a6a976572f02b896c917832de4e4e3891a0238

Red Hat Enterprise Linux for Power, little endian - Extended Update Support 10.0

SRPM
openexr-3.1.10-8.el10_0.1.src.rpm SHA-256: ac18836a8e9111893cd62050d2706c33bc71ce3e5c9c301799831352350ddc24
ppc64le
openexr-3.1.10-8.el10_0.1.ppc64le.rpm SHA-256: 3b8db4e37414a41525a24f7adbf2dab5af66871885ea43295c91f8377865bf5c
openexr-debuginfo-3.1.10-8.el10_0.1.ppc64le.rpm SHA-256: dd30d78b0b424562b7d5475344f02834ee8312de7befb369749a2c2d6b064dbf
openexr-debugsource-3.1.10-8.el10_0.1.ppc64le.rpm SHA-256: 14fc7b98f766ae709aa57d150c25e3b65e49c7690ff18c5c97c593fa4dc796d5
openexr-libs-3.1.10-8.el10_0.1.ppc64le.rpm SHA-256: f3648229f8e734020930f4f443f3c19aa408f3b38841cb5bbeb1259d25aed2d2
openexr-libs-debuginfo-3.1.10-8.el10_0.1.ppc64le.rpm SHA-256: 3fbaa96a0f03cc69aac70b8f38b0df9e42db24c7a100bc280b81985a93d267d6

Red Hat Enterprise Linux for ARM 64 - Extended Update Support 10.0

SRPM
openexr-3.1.10-8.el10_0.1.src.rpm SHA-256: ac18836a8e9111893cd62050d2706c33bc71ce3e5c9c301799831352350ddc24
aarch64
openexr-3.1.10-8.el10_0.1.aarch64.rpm SHA-256: 42dbf58c20accbb331163cb8e337fa99b20cdddea4a79d89ef8b4225b3e611da
openexr-debuginfo-3.1.10-8.el10_0.1.aarch64.rpm SHA-256: 4d7792e6367c1860f9b4482db1d7a685df3af0d9689f4545bdc4466c73e88628
openexr-debugsource-3.1.10-8.el10_0.1.aarch64.rpm SHA-256: 062d239cd6edd4861aa3c405241dd51b7ae16ce03b85e7e65cc53ca378e56f22
openexr-libs-3.1.10-8.el10_0.1.aarch64.rpm SHA-256: 503d78a7405ba0b2a0c9c722e179306405a29a7bde33ebdae55fa9645dacc419
openexr-libs-debuginfo-3.1.10-8.el10_0.1.aarch64.rpm SHA-256: 6c619d99069cb76fc0f872a64a6b2f00c81bbe6ea32eac5e868d03b09ca4e23e

Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support 10.0

SRPM
x86_64
openexr-debuginfo-3.1.10-8.el10_0.1.x86_64.rpm SHA-256: ce720438b9f8acea6a8a2210e1669c51cb8c882da07c3f49a9a7c9ae803a3514
openexr-debugsource-3.1.10-8.el10_0.1.x86_64.rpm SHA-256: d26d4e78879fb3bc41d8a9a84be9e0493bd44d82cf7a867650bb3d2c4f6b96e9
openexr-devel-3.1.10-8.el10_0.1.x86_64.rpm SHA-256: f6f793b77592d92304426974c4471eb012f9ccc424fe838a7a7fcd38482bba25
openexr-libs-debuginfo-3.1.10-8.el10_0.1.x86_64.rpm SHA-256: 7df031bc39fd9ae9f7b83b45045cc9c96fba493ec7be512532ac0261602bd5ab

Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support 10.0

SRPM
ppc64le
openexr-debuginfo-3.1.10-8.el10_0.1.ppc64le.rpm SHA-256: dd30d78b0b424562b7d5475344f02834ee8312de7befb369749a2c2d6b064dbf
openexr-debugsource-3.1.10-8.el10_0.1.ppc64le.rpm SHA-256: 14fc7b98f766ae709aa57d150c25e3b65e49c7690ff18c5c97c593fa4dc796d5
openexr-devel-3.1.10-8.el10_0.1.ppc64le.rpm SHA-256: b6289a939fec5e70fe7c46aa9e3d9a36c20639fa41bd37d01dd30b80c0a922a9
openexr-libs-debuginfo-3.1.10-8.el10_0.1.ppc64le.rpm SHA-256: 3fbaa96a0f03cc69aac70b8f38b0df9e42db24c7a100bc280b81985a93d267d6

Red Hat CodeReady Linux Builder for IBM z Systems - Extended Update Support 10.0

SRPM
s390x
openexr-debuginfo-3.1.10-8.el10_0.1.s390x.rpm SHA-256: 5dbebea9584eb3758a736a1ca4c08d5f2604c6f4b5879acd334a6adf172b3532
openexr-debugsource-3.1.10-8.el10_0.1.s390x.rpm SHA-256: 25198b92be565dbf03cef914622fefdb90ce79cb19d118e30eb301e02497ebe4
openexr-devel-3.1.10-8.el10_0.1.s390x.rpm SHA-256: 8862efacc20265a54dc1a336d59620845d58a9136bf0c6a7e081df227af0b2c0
openexr-libs-debuginfo-3.1.10-8.el10_0.1.s390x.rpm SHA-256: 9710f1941475bca2762c87c186a6a976572f02b896c917832de4e4e3891a0238

Red Hat CodeReady Linux Builder for ARM 64 - Extended Update Support 10.0

SRPM
aarch64
openexr-debuginfo-3.1.10-8.el10_0.1.aarch64.rpm SHA-256: 4d7792e6367c1860f9b4482db1d7a685df3af0d9689f4545bdc4466c73e88628
openexr-debugsource-3.1.10-8.el10_0.1.aarch64.rpm SHA-256: 062d239cd6edd4861aa3c405241dd51b7ae16ce03b85e7e65cc53ca378e56f22
openexr-devel-3.1.10-8.el10_0.1.aarch64.rpm SHA-256: b032c10c2814617cea867f457f39891b928421b39ae01d65c0a6ec4490f22eaa
openexr-libs-debuginfo-3.1.10-8.el10_0.1.aarch64.rpm SHA-256: 6c619d99069cb76fc0f872a64a6b2f00c81bbe6ea32eac5e868d03b09ca4e23e

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 10.0

SRPM
openexr-3.1.10-8.el10_0.1.src.rpm SHA-256: ac18836a8e9111893cd62050d2706c33bc71ce3e5c9c301799831352350ddc24
aarch64
openexr-3.1.10-8.el10_0.1.aarch64.rpm SHA-256: 42dbf58c20accbb331163cb8e337fa99b20cdddea4a79d89ef8b4225b3e611da
openexr-debuginfo-3.1.10-8.el10_0.1.aarch64.rpm SHA-256: 4d7792e6367c1860f9b4482db1d7a685df3af0d9689f4545bdc4466c73e88628
openexr-debugsource-3.1.10-8.el10_0.1.aarch64.rpm SHA-256: 062d239cd6edd4861aa3c405241dd51b7ae16ce03b85e7e65cc53ca378e56f22
openexr-libs-3.1.10-8.el10_0.1.aarch64.rpm SHA-256: 503d78a7405ba0b2a0c9c722e179306405a29a7bde33ebdae55fa9645dacc419
openexr-libs-debuginfo-3.1.10-8.el10_0.1.aarch64.rpm SHA-256: 6c619d99069cb76fc0f872a64a6b2f00c81bbe6ea32eac5e868d03b09ca4e23e

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 10.0

SRPM
openexr-3.1.10-8.el10_0.1.src.rpm SHA-256: ac18836a8e9111893cd62050d2706c33bc71ce3e5c9c301799831352350ddc24
s390x
openexr-3.1.10-8.el10_0.1.s390x.rpm SHA-256: a76bfe084d0a393d7e58c898f37d9991dbba8f9cec0a47291ee84f9e8d0fde04
openexr-debuginfo-3.1.10-8.el10_0.1.s390x.rpm SHA-256: 5dbebea9584eb3758a736a1ca4c08d5f2604c6f4b5879acd334a6adf172b3532
openexr-debugsource-3.1.10-8.el10_0.1.s390x.rpm SHA-256: 25198b92be565dbf03cef914622fefdb90ce79cb19d118e30eb301e02497ebe4
openexr-libs-3.1.10-8.el10_0.1.s390x.rpm SHA-256: 063873d04d79797404f25fd6770659116c69dfa2818bbe9ba8ae2ddfaa74aa56
openexr-libs-debuginfo-3.1.10-8.el10_0.1.s390x.rpm SHA-256: 9710f1941475bca2762c87c186a6a976572f02b896c917832de4e4e3891a0238

Red Hat Enterprise Linux for Power, little endian - 4 years of support 10.0

SRPM
openexr-3.1.10-8.el10_0.1.src.rpm SHA-256: ac18836a8e9111893cd62050d2706c33bc71ce3e5c9c301799831352350ddc24
ppc64le
openexr-3.1.10-8.el10_0.1.ppc64le.rpm SHA-256: 3b8db4e37414a41525a24f7adbf2dab5af66871885ea43295c91f8377865bf5c
openexr-debuginfo-3.1.10-8.el10_0.1.ppc64le.rpm SHA-256: dd30d78b0b424562b7d5475344f02834ee8312de7befb369749a2c2d6b064dbf
openexr-debugsource-3.1.10-8.el10_0.1.ppc64le.rpm SHA-256: 14fc7b98f766ae709aa57d150c25e3b65e49c7690ff18c5c97c593fa4dc796d5
openexr-libs-3.1.10-8.el10_0.1.ppc64le.rpm SHA-256: f3648229f8e734020930f4f443f3c19aa408f3b38841cb5bbeb1259d25aed2d2
openexr-libs-debuginfo-3.1.10-8.el10_0.1.ppc64le.rpm SHA-256: 3fbaa96a0f03cc69aac70b8f38b0df9e42db24c7a100bc280b81985a93d267d6

Red Hat Enterprise Linux for x86_64 - 4 years of updates 10.0

SRPM
openexr-3.1.10-8.el10_0.1.src.rpm SHA-256: ac18836a8e9111893cd62050d2706c33bc71ce3e5c9c301799831352350ddc24
x86_64
openexr-3.1.10-8.el10_0.1.x86_64.rpm SHA-256: f24e0b5a566be548d97c34e32f348b99ea0c699fb359e5fac926a30e4786d4c7
openexr-debuginfo-3.1.10-8.el10_0.1.x86_64.rpm SHA-256: ce720438b9f8acea6a8a2210e1669c51cb8c882da07c3f49a9a7c9ae803a3514
openexr-debugsource-3.1.10-8.el10_0.1.x86_64.rpm SHA-256: d26d4e78879fb3bc41d8a9a84be9e0493bd44d82cf7a867650bb3d2c4f6b96e9
openexr-libs-3.1.10-8.el10_0.1.x86_64.rpm SHA-256: 510b50e73afd593e46b962e853f080026c331bdf8e402ebd5533698c3b158452
openexr-libs-debuginfo-3.1.10-8.el10_0.1.x86_64.rpm SHA-256: 7df031bc39fd9ae9f7b83b45045cc9c96fba493ec7be512532ac0261602bd5ab

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility