Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:8869 - Security Advisory
Issued:
2026-04-20
Updated:
2026-04-20

RHSA-2026:8869 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: openexr security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for openexr is now available for Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

OpenEXR is an open-source high-dynamic-range floating-point image file format for high-quality image processing and storage. This document presents a brief overview of OpenEXR and explains concepts that are specific to this format. This package containes the binaries for OpenEXR.

Security Fix(es):

  • openexr: OpenEXR: Arbitrary code execution via integer overflow in EXR file processing (CVE-2026-27622)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server - AUS 9.2 x86_64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2 s390x
  • Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2 x86_64
  • Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.2 aarch64
  • Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.2 ppc64le
  • Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.2 s390x

Fixes

  • BZ - 2444251 - CVE-2026-27622 openexr: OpenEXR: Arbitrary code execution via integer overflow in EXR file processing

CVEs

  • CVE-2026-27622

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server - AUS 9.2

SRPM
openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48
x86_64
openexr-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: be3d07cddf5143de004074fb65186c5c63a4bb83559d9619a5f222d0a1a61125
openexr-debuginfo-3.1.1-2.el9_2.2.i686.rpm SHA-256: 64570012d50391acc4b2933e6255ad1fb4a85912b39e039b998795143568cf12
openexr-debuginfo-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 2dbf2542ca4c443897ceaae056adf933d31dbe3d0380d86d09e33ec419fefec5
openexr-debugsource-3.1.1-2.el9_2.2.i686.rpm SHA-256: 85aafcb755ea81f7a3c5994090fe1422f6cf3faa8dc494c1549380ccee28a5f8
openexr-debugsource-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 26aba285566a2b5bfd9af23cae1ce59de6d54e8da2372c7f9a733d422e274a6f
openexr-libs-3.1.1-2.el9_2.2.i686.rpm SHA-256: b355ce4ba02863b9beed0ac04b0addd23258358429aa2abd98de8f2fbbe6ed2b
openexr-libs-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 14335ca5fef85d1e3e7fc5ae37d554000e7d68d427d086f3e092a0665aa12b38
openexr-libs-debuginfo-3.1.1-2.el9_2.2.i686.rpm SHA-256: 11af397b8fa472db97422ffbf48a63603870a7bd3afa62f9fc14f2d455862954
openexr-libs-debuginfo-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: b0272ba43059be2a6e584c3129c142b6d8760a45c8cad78299a29180c3dcd533

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2

SRPM
openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48
ppc64le
openexr-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 3a4e2e4b74a4ebfdcb741089829885f0db2963ae6bf35188015cb1fad1076003
openexr-debuginfo-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 2c11da91a25f3f7a98680df7998781aea3430f8a61362863057cfdb208e797a1
openexr-debugsource-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 672d5470f67c30a9180c627aa7c2f0f1abf843d16f66dccc04a2e77a47c308ab
openexr-libs-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 858cfbd617657031e758a50f6bef50e91f0cf533022d2d7595768417e2138e41
openexr-libs-debuginfo-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 3ce98288d3543633b73e8e8ed9413a857236790d266e0f83e0a2e7fa2094b60e

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2

SRPM
openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48
x86_64
openexr-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: be3d07cddf5143de004074fb65186c5c63a4bb83559d9619a5f222d0a1a61125
openexr-debuginfo-3.1.1-2.el9_2.2.i686.rpm SHA-256: 64570012d50391acc4b2933e6255ad1fb4a85912b39e039b998795143568cf12
openexr-debuginfo-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 2dbf2542ca4c443897ceaae056adf933d31dbe3d0380d86d09e33ec419fefec5
openexr-debugsource-3.1.1-2.el9_2.2.i686.rpm SHA-256: 85aafcb755ea81f7a3c5994090fe1422f6cf3faa8dc494c1549380ccee28a5f8
openexr-debugsource-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 26aba285566a2b5bfd9af23cae1ce59de6d54e8da2372c7f9a733d422e274a6f
openexr-libs-3.1.1-2.el9_2.2.i686.rpm SHA-256: b355ce4ba02863b9beed0ac04b0addd23258358429aa2abd98de8f2fbbe6ed2b
openexr-libs-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 14335ca5fef85d1e3e7fc5ae37d554000e7d68d427d086f3e092a0665aa12b38
openexr-libs-debuginfo-3.1.1-2.el9_2.2.i686.rpm SHA-256: 11af397b8fa472db97422ffbf48a63603870a7bd3afa62f9fc14f2d455862954
openexr-libs-debuginfo-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: b0272ba43059be2a6e584c3129c142b6d8760a45c8cad78299a29180c3dcd533

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2

SRPM
openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48
aarch64
openexr-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 95c62ca152a481f807385d26afebafc99bd9e4834e3364dd058402bfb6d66135
openexr-debuginfo-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 6c19f0398c0b20ad572ffbce0e46f15e488cb4b47b5f1481f972ee6cbb339bd0
openexr-debugsource-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 3e7564dfb746165f572a1d00a9ee90edaa6b73ba2182253faa7fb63ac45be57a
openexr-libs-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 7ef068e7d990c3c6e11d1ca63ca6f4a3144aaf9ab2237c85554669f053386a38
openexr-libs-debuginfo-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 5d2d096271f2d2156bd44d8216e1f919d89da96d8c95db286a9fc90120aaf0d9

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2

SRPM
openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48
s390x
openexr-3.1.1-2.el9_2.2.s390x.rpm SHA-256: 9dcbb8093ff802c8d72560ba5112f7913ff9633f6b871980bf5390307018f3af
openexr-debuginfo-3.1.1-2.el9_2.2.s390x.rpm SHA-256: e6f1fe7312c956f49f14f331dae3ab23917bcf9e45a113305c9bd47624b91759
openexr-debugsource-3.1.1-2.el9_2.2.s390x.rpm SHA-256: d8680d9f335d42ba7d44aad45ec38e1f4a89e5bf8db5644a79dee3f5bb5be0b6
openexr-libs-3.1.1-2.el9_2.2.s390x.rpm SHA-256: f848bf75c8c2c03703abb515fd0083f207ced7a2efab0b4069e499ce6604af08
openexr-libs-debuginfo-3.1.1-2.el9_2.2.s390x.rpm SHA-256: 33f5ccf054c8ea94c6386970a7d484233811eb785306bbd4123fdd704977f660

Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2

SRPM
openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48
x86_64
openexr-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: be3d07cddf5143de004074fb65186c5c63a4bb83559d9619a5f222d0a1a61125
openexr-debuginfo-3.1.1-2.el9_2.2.i686.rpm SHA-256: 64570012d50391acc4b2933e6255ad1fb4a85912b39e039b998795143568cf12
openexr-debuginfo-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 2dbf2542ca4c443897ceaae056adf933d31dbe3d0380d86d09e33ec419fefec5
openexr-debugsource-3.1.1-2.el9_2.2.i686.rpm SHA-256: 85aafcb755ea81f7a3c5994090fe1422f6cf3faa8dc494c1549380ccee28a5f8
openexr-debugsource-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 26aba285566a2b5bfd9af23cae1ce59de6d54e8da2372c7f9a733d422e274a6f
openexr-libs-3.1.1-2.el9_2.2.i686.rpm SHA-256: b355ce4ba02863b9beed0ac04b0addd23258358429aa2abd98de8f2fbbe6ed2b
openexr-libs-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: 14335ca5fef85d1e3e7fc5ae37d554000e7d68d427d086f3e092a0665aa12b38
openexr-libs-debuginfo-3.1.1-2.el9_2.2.i686.rpm SHA-256: 11af397b8fa472db97422ffbf48a63603870a7bd3afa62f9fc14f2d455862954
openexr-libs-debuginfo-3.1.1-2.el9_2.2.x86_64.rpm SHA-256: b0272ba43059be2a6e584c3129c142b6d8760a45c8cad78299a29180c3dcd533

Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.2

SRPM
openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48
aarch64
openexr-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 95c62ca152a481f807385d26afebafc99bd9e4834e3364dd058402bfb6d66135
openexr-debuginfo-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 6c19f0398c0b20ad572ffbce0e46f15e488cb4b47b5f1481f972ee6cbb339bd0
openexr-debugsource-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 3e7564dfb746165f572a1d00a9ee90edaa6b73ba2182253faa7fb63ac45be57a
openexr-libs-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 7ef068e7d990c3c6e11d1ca63ca6f4a3144aaf9ab2237c85554669f053386a38
openexr-libs-debuginfo-3.1.1-2.el9_2.2.aarch64.rpm SHA-256: 5d2d096271f2d2156bd44d8216e1f919d89da96d8c95db286a9fc90120aaf0d9

Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.2

SRPM
openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48
ppc64le
openexr-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 3a4e2e4b74a4ebfdcb741089829885f0db2963ae6bf35188015cb1fad1076003
openexr-debuginfo-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 2c11da91a25f3f7a98680df7998781aea3430f8a61362863057cfdb208e797a1
openexr-debugsource-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 672d5470f67c30a9180c627aa7c2f0f1abf843d16f66dccc04a2e77a47c308ab
openexr-libs-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 858cfbd617657031e758a50f6bef50e91f0cf533022d2d7595768417e2138e41
openexr-libs-debuginfo-3.1.1-2.el9_2.2.ppc64le.rpm SHA-256: 3ce98288d3543633b73e8e8ed9413a857236790d266e0f83e0a2e7fa2094b60e

Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.2

SRPM
openexr-3.1.1-2.el9_2.2.src.rpm SHA-256: f807b05023b17953233e07ac1f6cc8ea7f82bf34c18fd9fd90ae735c14786f48
s390x
openexr-3.1.1-2.el9_2.2.s390x.rpm SHA-256: 9dcbb8093ff802c8d72560ba5112f7913ff9633f6b871980bf5390307018f3af
openexr-debuginfo-3.1.1-2.el9_2.2.s390x.rpm SHA-256: e6f1fe7312c956f49f14f331dae3ab23917bcf9e45a113305c9bd47624b91759
openexr-debugsource-3.1.1-2.el9_2.2.s390x.rpm SHA-256: d8680d9f335d42ba7d44aad45ec38e1f4a89e5bf8db5644a79dee3f5bb5be0b6
openexr-libs-3.1.1-2.el9_2.2.s390x.rpm SHA-256: f848bf75c8c2c03703abb515fd0083f207ced7a2efab0b4069e499ce6604af08
openexr-libs-debuginfo-3.1.1-2.el9_2.2.s390x.rpm SHA-256: 33f5ccf054c8ea94c6386970a7d484233811eb785306bbd4123fdd704977f660

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility