Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-19624

Опубликовано: 06 дек. 2019
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 6.4
CVSS3: 6.5

Описание

An out-of-bounds read was discovered in OpenCV before 4.1.1. Specifically, variable coarsest_scale is assumed to be greater than or equal to finest_scale within the calc()/ocl_calc() functions in dis_flow.cpp. However, this is not true when dealing with small images, leading to an out-of-bounds read of the heap-allocated arrays Ux and Uy.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
devel

not-affected

4.1.2+dfsg-5
disco

ignored

end of life
eoan

ignored

end of life
esm-apps/bionic

released

3.2.0+dfsg-4ubuntu0.1+esm4
esm-apps/focal

not-affected

4.1.2+dfsg-5
esm-apps/jammy

not-affected

4.1.2+dfsg-5
esm-apps/noble

not-affected

4.1.2+dfsg-5
esm-apps/xenial

not-affected

code not present
esm-infra-legacy/trusty

not-affected

code not present

Показывать по

EPSS

Процентиль: 45%
0.0023
Низкий

6.4 Medium

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
redhat
больше 6 лет назад

An out-of-bounds read was discovered in OpenCV before 4.1.1. Specifically, variable coarsest_scale is assumed to be greater than or equal to finest_scale within the calc()/ocl_calc() functions in dis_flow.cpp. However, this is not true when dealing with small images, leading to an out-of-bounds read of the heap-allocated arrays Ux and Uy.

CVSS3: 6.5
nvd
около 6 лет назад

An out-of-bounds read was discovered in OpenCV before 4.1.1. Specifically, variable coarsest_scale is assumed to be greater than or equal to finest_scale within the calc()/ocl_calc() functions in dis_flow.cpp. However, this is not true when dealing with small images, leading to an out-of-bounds read of the heap-allocated arrays Ux and Uy.

CVSS3: 6.5
debian
около 6 лет назад

An out-of-bounds read was discovered in OpenCV before 4.1.1. Specifica ...

CVSS3: 6.5
github
больше 4 лет назад

Out-of-bounds Read in OpenCV

CVSS3: 6.5
fstec
больше 6 лет назад

Уязвимость переменной coarsest_scale функций calc() и ocl_calc() компонента dis_flow.cpp библиотеки алгоритмов компьютерного зрения, обработки изображений и численных алгоритмов общего назначения Open Source Computer Vision Library (OpenCV), связанная с чтением за допустимыми границами буфера данных, позволяющая нарушителю получить доступ к конфиденциальным данным, а также вызвать отказ в обслуживании

EPSS

Процентиль: 45%
0.0023
Низкий

6.4 Medium

CVSS2

6.5 Medium

CVSS3