An information disclosure vulnerability exists in the DPXOutput::close() functionality of OpenImageIO Project OpenImageIO v2.4.4.2. A specially crafted ImageOutput Object can lead to leaked heap data. An attacker can provide malicious input to trigger this vulnerability.
https://www.debian.org/security/2023/dsa-5384
https://talosintelligence.com/vulnerability_reports/TALOS-2022-1651