Known Vulnerabilities for products from Opencv

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Opencv".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2019-19624 An out-of-bounds read was discovered in OpenCV before 4.1.1. Specifically, variable coarsest_scale is assumed to be greater t... 6.5 - MEDIUM 2019-12-06 2019-12-17
CVE-2019-16249 OpenCV 4.1.1 has an out-of-bounds read in hal_baseline::v_load in core/hal/intrin_sse.hpp when called from computeSSDMeanNorm... 5.3 - MEDIUM 2019-09-11 2019-12-03
CVE-2019-15939 An issue was discovered in OpenCV 4.1.0. There is a divide-by-zero error in cv::HOGDescriptor::getDescriptorSize in modules/o... 5.9 - MEDIUM 2019-09-05 2021-11-30
CVE-2019-14493 An issue was discovered in OpenCV before 4.1.1. There is a NULL pointer dereference in the function cv::XMLParser::parse at m... 7.5 - HIGH 2019-08-01 2021-11-30
CVE-2019-14492 An issue was discovered in OpenCV before 3.4.7 and 4.x before 4.1.1. There is an out of bounds read/write in the function Haa... 7.5 - HIGH 2019-08-01 2020-04-17
CVE-2019-14491 An issue was discovered in OpenCV before 3.4.7 and 4.x before 4.1.1. There is an out of bounds read in the function cv::predi... 8.2 - HIGH 2019-08-01 2023-11-07
CVE-2019-5064 An exploitable heap buffer overflow vulnerability exists in the data structure persistence functionality of OpenCV, before ve... 8.8 - HIGH 2020-01-03 2022-06-17
CVE-2019-5063 An exploitable heap buffer overflow vulnerability exists in the data structure persistence functionality of OpenCV 4.1.0. A s... 8.8 - HIGH 2020-01-03 2022-06-17
CVE-2018-7714 ** DISPUTED ** The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in OpenCV 3.4.1 allows remote attack... 7.5 - HIGH 2018-03-05 2023-11-07
CVE-2018-7713 ** DISPUTED ** The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in OpenCV 3.4.1 allows remote attack... 7.5 - HIGH 2018-03-05 2023-11-07
CVE-2018-7712 ** DISPUTED ** The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in OpenCV 3.4.1 allows remote attack... 7.5 - HIGH 2018-03-05 2023-11-07
CVE-2018-5269 In OpenCV 3.3.1, an assertion failure happens in cv::RBaseStream::setPos in modules/imgcodecs/src/bitstrm.cpp because of an i... 5.5 - MEDIUM 2018-01-08 2021-11-30
CVE-2018-5268 In OpenCV 3.3.1, a heap-based buffer overflow happens in cv::Jpeg2KDecoder::readComponent8u in modules/imgcodecs/src/grfmt_jp... 5.5 - MEDIUM 2018-01-08 2021-11-30
CVE-2017-1000450 In opencv/modules/imgcodecs/src/utils.cpp, functions FillUniColor and FillUniGray do not check the input length, which can le... 8.8 - HIGH 2018-01-02 2021-11-30
CVE-2017-18009 In OpenCV 3.3.1, a heap-based buffer over-read exists in the function cv::HdrDecoder::checkSignature in modules/imgcodecs/src... 7.5 - HIGH 2018-01-01 2019-10-03
CVE-2017-17760 OpenCV 3.3.1 has a Buffer Overflow in the cv::PxMDecoder::readData function in grfmt_pxm.cpp, because an incorrect size value... 6.5 - MEDIUM 2017-12-29 2021-12-16
CVE-2017-14136 OpenCV (Open Source Computer Vision Library) 3.3 has an out-of-bounds write error in the function FillColorRow1 in utils.cpp ... 6.5 - MEDIUM 2017-09-04 2019-03-20
CVE-2017-12864 In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function ReadNumber did not checkout the input length, which lead to integer o... 8.8 - HIGH 2017-08-15 2021-11-30
CVE-2017-12863 In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function PxMDecoder::readData has an integer overflow when calculate src_pitch... 8.8 - HIGH 2017-08-15 2021-11-30
CVE-2017-12862 In modules/imgcodecs/src/grfmt_pxm.cpp, the length of buffer AutoBuffer _src is small than expected, which will cause copy bu... 8.8 - HIGH 2017-08-15 2021-11-30

Known software with vulnerabilities from Opencv

Type Vendor Product Version
ApplicationOpencvOpencv2.2