Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-53644

Опубликовано: 17 июл. 2025
Источник: redhat
CVSS3: 7.3
EPSS Низкий

Описание

OpenCV is an Open Source Computer Vision Library. Versions prior to 4.12.0 have an uninitialized pointer variable on stack that may lead to arbitrary heap buffer write when reading crafted JPEG images. Version 4.12.0 fixes the vulnerability.

A heap buffer write flaw was found in OpenCV. This vulnerability could result in arbitrary memory overwrites and code execution within the context of a program using OpenCV.

Отчет

No Red Hat products or offerings are affected by this vulnerability as the vulnerable code is not present in opencv-3.4 that is shipped with Red Hat Enterprise Linux.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6opencvNot affected
Red Hat Enterprise Linux 7opencvNot affected
Red Hat Enterprise Linux 8opencvNot affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-457

EPSS

Процентиль: 17%
0.00056
Низкий

7.3 High

CVSS3

Связанные уязвимости

ubuntu
20 дней назад

OpenCV is an Open Source Computer Vision Library. Versions prior to 4.12.0 have an uninitialized pointer variable on stack that may lead to arbitrary heap buffer write when reading crafted JPEG images. Version 4.12.0 fixes the vulnerability.

nvd
20 дней назад

OpenCV is an Open Source Computer Vision Library. Versions prior to 4.12.0 have an uninitialized pointer variable on stack that may lead to arbitrary heap buffer write when reading crafted JPEG images. Version 4.12.0 fixes the vulnerability.

debian
20 дней назад

OpenCV is an Open Source Computer Vision Library. Versions prior to 4. ...

EPSS

Процентиль: 17%
0.00056
Низкий

7.3 High

CVSS3