Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-53644

Опубликовано: 17 июл. 2025
Источник: nvd
CVSS3: 9.8
EPSS Низкий

Описание

OpenCV is an Open Source Computer Vision Library. Versions 4.10.0 and 4.11.0 have an uninitialized pointer variable on stack that may lead to arbitrary heap buffer write when reading crafted JPEG images. Version 4.12.0 fixes the vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:opencv:opencv:*:*:*:*:*:*:*:*
Версия от 4.10.0 (включая) до 4.12.0 (исключая)

EPSS

Процентиль: 13%
0.00042
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-457

Связанные уязвимости

CVSS3: 9.8
ubuntu
5 месяцев назад

OpenCV is an Open Source Computer Vision Library. Versions 4.10.0 and 4.11.0 have an uninitialized pointer variable on stack that may lead to arbitrary heap buffer write when reading crafted JPEG images. Version 4.12.0 fixes the vulnerability.

CVSS3: 7.3
redhat
5 месяцев назад

OpenCV is an Open Source Computer Vision Library. Versions prior to 4.12.0 have an uninitialized pointer variable on stack that may lead to arbitrary heap buffer write when reading crafted JPEG images. Version 4.12.0 fixes the vulnerability.

CVSS3: 9.8
debian
5 месяцев назад

OpenCV is an Open Source Computer Vision Library. Versions 4.10.0 and ...

EPSS

Процентиль: 13%
0.00042
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-457