Описание
In OpenCV 3.3.1, a heap-based buffer over-read exists in the function cv::HdrDecoder::checkSignature in modules/imgcodecs/src/grfmt_hdr.cpp.
Отчет
This issue did not affect the versions of opencv as shipped with Red Hat Enterprise Linux 6, 7, and 8.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 6 | opencv | Not affected | ||
| Red Hat Enterprise Linux 7 | opencv | Not affected | ||
| Red Hat Enterprise Linux 8 | opencv | Not affected |
Показывать по
10
Дополнительная информация
Статус:
Low
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=1531268opencv: heap-based buffer over-read in function cv::HdrDecoder::checkSignature in modules/imgcodecs/src/grfmt_hdr.cpp
4.4 Medium
CVSS3
Связанные уязвимости
CVSS3: 7.5
ubuntu
около 8 лет назад
In OpenCV 3.3.1, a heap-based buffer over-read exists in the function cv::HdrDecoder::checkSignature in modules/imgcodecs/src/grfmt_hdr.cpp.
CVSS3: 7.5
nvd
около 8 лет назад
In OpenCV 3.3.1, a heap-based buffer over-read exists in the function cv::HdrDecoder::checkSignature in modules/imgcodecs/src/grfmt_hdr.cpp.
CVSS3: 7.5
debian
около 8 лет назад
In OpenCV 3.3.1, a heap-based buffer over-read exists in the function ...
4.4 Medium
CVSS3