Netskope Threat Labs

FILE-MULTIMEDIA OpenImageIO heap buffer overflow attempted

IPS-CFWIPS-SWG

3 SIDs: 170124, 170127, 170128

First seen
March 2025
Last seen
July 2025

Detects image files exploiting CVE-2024-55192 and CVE-2024-55194, heap buffer overflows in the OpenImageIO library that can allow code execution. The rule matches the crafted image headers that public exploits use to overflow parser buffers.