OpenCV records
35 published records for vendor opencv.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 5
- With a fix record
- 91.4%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-787 Out-of-bounds Write8
- CWE-125 Out-of-bounds Read7
- CWE-617 Reachable Assertion4
- CWE-190 Integer Overflow or Wraparound3
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')3
- CWE-476 NULL Pointer Dereference2
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
35 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2019-5063No exploit | An exploitable heap buffer overflow vulnerability exists in the data structure persistence functionality of OpenCV 4.1.0.opencv · opencv · CWE-120 | High8.8 | — | 21.1% | Jan 3, 2020 |
38Monitor | CVE-2019-5064No exploit | An exploitable heap buffer overflow vulnerability exists in the data structure persistence functionality of OpenCV, before version 4.2.0.opencv · opencv · CWE-120 | High8.8 | — | 10.7% | Jan 3, 2020 |
36Monitor | CVE-2017-1000450No exploit | In opencv/modules/imgcodecs/src/utils.cpp, functions FillUniColor and FillUniGray do not check the input length, which can lead to integer oopencv · opencv · CWE-190 | High8.8 | — | 3.3% | Jan 2, 2018 |
36Monitor | CVE-2017-12862No exploit | In modules/imgcodecs/src/grfmt_pxm.cpp, the length of buffer AutoBuffer _src is small than expected, which will cause copy buffer overflow lopencv · opencv · CWE-787 | High8.8 | — | 3.1% | Aug 15, 2017 |
36Monitor | CVE-2017-12864No exploit | In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function ReadNumber did not checkout the input length, which lead to integer overflow.opencv · opencv · CWE-190 | High8.8 | — | 2.7% | Aug 15, 2017 |
36Monitor | CVE-2017-12863No exploit | In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function PxMDecoder::readData has an integer overflow when calculate src_pitch.opencv · opencv · CWE-190 | High8.8 | — | 2.7% | Aug 15, 2017 |
36Monitor | CVE-2016-1516No exploit | OpenCV 3.0.0 has a double free issue that allows attackers to execute arbitrary code.opencv · opencv · CWE-415 | High8.8 | — | 2.3% | Apr 9, 2017 |
36Monitor | CVE-2017-12601No exploit | OpenCV (Open Source Computer Vision Library) through 3.3 has a buffer overflow in the cv::BmpDecoder::readData function in modules/imgcodecsopencv · opencv · CWE-120 | High8.8 | — | 2.1% | Aug 6, 2017 |
36Monitor | CVE-2017-12603No exploit | OpenCV (Open Source Computer Vision Library) through 3.3 has an invalid write in the cv::RLByteStream::getBytes function in modules/imgcodecopencv · opencv · CWE-787 | High8.8 | — | 2.0% | Aug 6, 2017 |
36Monitor | CVE-2017-12604No exploit | OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds write error in the FillUniColor function in utils.cpp when reaopencv · opencv · CWE-787 | High8.8 | — | 2.0% | Aug 6, 2017 |
36Monitor | CVE-2017-12605No exploit | OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds write error in the FillColorRow8 function in utils.cpp when reopencv · opencv · CWE-787 | High8.8 | — | 2.0% | Aug 6, 2017 |
36Monitor | CVE-2017-12606No exploit | OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds write error in the function FillColorRow4 in utils.cpp when reopencv · opencv · CWE-787 | High8.8 | — | 2.0% | Aug 6, 2017 |
36Monitor | CVE-2017-12599No exploit | OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds read error in the function icvCvt_BGRA2BGR_8u_C4C3R when readiopencv · opencv · CWE-125 | High8.8 | — | 2.0% | Aug 6, 2017 |
36Monitor | CVE-2017-12597No exploit | OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds write error in the function FillColorRow1 in utils.cpp when reopencv · opencv · CWE-787 | High8.8 | — | 2.0% | Aug 6, 2017 |
36Monitor | CVE-2017-12598No exploit | OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds read error in the cv::RBaseStream::readBlock function in modulopencv · opencv · CWE-125 | High8.8 | — | 2.0% | Aug 6, 2017 |
33Monitor | CVE-2019-14491No exploit | An issue was discovered in OpenCV before 3.4.7 and 4.x before 4.1.1.opencv · opencv · CWE-125 | High8.2 | — | 2.7% | Aug 1, 2019 |
31Monitor | CVE-2019-14493No exploit | An issue was discovered in OpenCV before 4.1.1.opencv · opencv · CWE-476 | High7.5 | — | 3.4% | Aug 1, 2019 |
31Monitor | CVE-2017-12602No exploit | OpenCV (Open Source Computer Vision Library) through 3.3 has a denial of service (memory consumption) issue, as demonstrated by the 10-opencopencv · opencv | High7.5 | — | 3.0% | Aug 6, 2017 |
31Monitor | CVE-2019-14492No exploit | An issue was discovered in OpenCV before 3.4.7 and 4.x before 4.1.1.opencv · opencv · CWE-125 | High7.5 | — | 2.8% | Aug 1, 2019 |
31Monitor | CVE-2017-18009No exploit | In OpenCV 3.3.1, a heap-based buffer over-read exists in the function cv::HdrDecoder::checkSignature in modules/imgcodecs/src/grfmt_hdr.cpp.opencv · opencv · CWE-125 | High7.5 | — | 2.3% | Jan 1, 2018 |
31Monitor | CVE-2018-7713No exploit | The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in OpenCV 3.4.1 allows remote attackers to cause a denial of serviopencv · opencv · CWE-617 | High7.5 | — | 2.3% | Mar 5, 2018 |
31Monitor | CVE-2017-12600No exploit | OpenCV (Open Source Computer Vision Library) through 3.3 has a denial of service (CPU consumption) issue, as demonstrated by the 11-opencv-dopencv · opencv | High7.5 | — | 2.2% | Aug 6, 2017 |
31Monitor | CVE-2018-7712No exploit | The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in OpenCV 3.4.1 allows remote attackers to cause a denial of serviopencv · opencv · CWE-617 | High7.5 | — | 2.2% | Mar 5, 2018 |
31Monitor | CVE-2018-7714No exploit | The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in OpenCV 3.4.1 allows remote attackers to cause a denial of serviopencv · opencv · CWE-617 | High7.5 | — | 2.2% | Mar 5, 2018 |
30Monitor | CVE-2023-2617No exploit | OpenCV wechat_qrcode Module decoded_bit_stream_parser.cpp decodeByteSegment null pointer dereferenceopencv · opencv · CWE-476 | High7.5 | — | 1.4% | May 10, 2023 |
- CVE-2019-506341Plan
An exploitable heap buffer overflow vulnerability exists in the data structure persistence functionality of OpenCV 4.1.0.
HighCVSS 8.8No exploitEPSS 21%opencv · opencvJan 3, 2020
- CVE-2019-506438Monitor
An exploitable heap buffer overflow vulnerability exists in the data structure persistence functionality of OpenCV, before version 4.2.0.
HighCVSS 8.8No exploitEPSS 11%opencv · opencvJan 3, 2020
- CVE-2017-100045036Monitor
In opencv/modules/imgcodecs/src/utils.cpp, functions FillUniColor and FillUniGray do not check the input length, which can lead to integer o
HighCVSS 8.8No exploitEPSS 3%opencv · opencvJan 2, 2018
- CVE-2017-1286236Monitor
In modules/imgcodecs/src/grfmt_pxm.cpp, the length of buffer AutoBuffer _src is small than expected, which will cause copy buffer overflow l
HighCVSS 8.8No exploitEPSS 3%opencv · opencvAug 15, 2017
- CVE-2017-1286436Monitor
In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function ReadNumber did not checkout the input length, which lead to integer overflow.
HighCVSS 8.8No exploitEPSS 3%opencv · opencvAug 15, 2017
- CVE-2017-1286336Monitor
In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function PxMDecoder::readData has an integer overflow when calculate src_pitch.
HighCVSS 8.8No exploitEPSS 3%opencv · opencvAug 15, 2017
- CVE-2016-151636Monitor
OpenCV 3.0.0 has a double free issue that allows attackers to execute arbitrary code.
HighCVSS 8.8No exploitEPSS 2%opencv · opencvApr 9, 2017
- CVE-2017-1260136Monitor
OpenCV (Open Source Computer Vision Library) through 3.3 has a buffer overflow in the cv::BmpDecoder::readData function in modules/imgcodecs
HighCVSS 8.8No exploitEPSS 2%opencv · opencvAug 6, 2017
- CVE-2017-1260336Monitor
OpenCV (Open Source Computer Vision Library) through 3.3 has an invalid write in the cv::RLByteStream::getBytes function in modules/imgcodec
HighCVSS 8.8No exploitEPSS 2%opencv · opencvAug 6, 2017
- CVE-2017-1260436Monitor
OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds write error in the FillUniColor function in utils.cpp when rea
HighCVSS 8.8No exploitEPSS 2%opencv · opencvAug 6, 2017
- CVE-2017-1260536Monitor
OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds write error in the FillColorRow8 function in utils.cpp when re
HighCVSS 8.8No exploitEPSS 2%opencv · opencvAug 6, 2017
- CVE-2017-1260636Monitor
OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds write error in the function FillColorRow4 in utils.cpp when re
HighCVSS 8.8No exploitEPSS 2%opencv · opencvAug 6, 2017
- CVE-2017-1259936Monitor
OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds read error in the function icvCvt_BGRA2BGR_8u_C4C3R when readi
HighCVSS 8.8No exploitEPSS 2%opencv · opencvAug 6, 2017
- CVE-2017-1259736Monitor
OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds write error in the function FillColorRow1 in utils.cpp when re
HighCVSS 8.8No exploitEPSS 2%opencv · opencvAug 6, 2017
- CVE-2017-1259836Monitor
OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds read error in the cv::RBaseStream::readBlock function in modul
HighCVSS 8.8No exploitEPSS 2%opencv · opencvAug 6, 2017
- CVE-2019-1449133Monitor
An issue was discovered in OpenCV before 3.4.7 and 4.x before 4.1.1.
HighCVSS 8.2No exploitEPSS 3%opencv · opencvAug 1, 2019
- CVE-2019-1449331Monitor
An issue was discovered in OpenCV before 4.1.1.
HighCVSS 7.5No exploitEPSS 3%opencv · opencvAug 1, 2019
- CVE-2017-1260231Monitor
OpenCV (Open Source Computer Vision Library) through 3.3 has a denial of service (memory consumption) issue, as demonstrated by the 10-openc
HighCVSS 7.5No exploitEPSS 3%opencv · opencvAug 6, 2017
- CVE-2019-1449231Monitor
An issue was discovered in OpenCV before 3.4.7 and 4.x before 4.1.1.
HighCVSS 7.5No exploitEPSS 3%opencv · opencvAug 1, 2019
- CVE-2017-1800931Monitor
In OpenCV 3.3.1, a heap-based buffer over-read exists in the function cv::HdrDecoder::checkSignature in modules/imgcodecs/src/grfmt_hdr.cpp.
HighCVSS 7.5No exploitEPSS 2%opencv · opencvJan 1, 2018
- CVE-2018-771331Monitor
The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in OpenCV 3.4.1 allows remote attackers to cause a denial of servi
HighCVSS 7.5No exploitEPSS 2%opencv · opencvMar 5, 2018
- CVE-2017-1260031Monitor
OpenCV (Open Source Computer Vision Library) through 3.3 has a denial of service (CPU consumption) issue, as demonstrated by the 11-opencv-d
HighCVSS 7.5No exploitEPSS 2%opencv · opencvAug 6, 2017
- CVE-2018-771231Monitor
The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in OpenCV 3.4.1 allows remote attackers to cause a denial of servi
HighCVSS 7.5No exploitEPSS 2%opencv · opencvMar 5, 2018
- CVE-2018-771431Monitor
The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in OpenCV 3.4.1 allows remote attackers to cause a denial of servi
HighCVSS 7.5No exploitEPSS 2%opencv · opencvMar 5, 2018
- CVE-2023-261730Monitor
OpenCV wechat_qrcode Module decoded_bit_stream_parser.cpp decodeByteSegment null pointer dereference
HighCVSS 7.5No exploitEPSS 1%opencv · opencvMay 10, 2023