CVE-2018-7714: High severity OpenCV Opencv vulnerability
DISPUTED The validateInputImageSize function in modules/imgcodecs/src/loadsave.cpp in OpenCV 3.4.1 allows remote attackers to cause a denial of service (assertion failure) because (pixels <= (1<<30)) may be false. Note: “OpenCV CVAssert is not an assertion (C-like assert()), it is regular C++ exception which can raised in case of invalid or non-supported parameters.”
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-7714?
CVE-2018-7714 is a vulnerability in OpenCV 3.4.1 that allows remote attackers to cause a denial of service.
How can the CVE-2018-7714 vulnerability be exploited?
The CVE-2018-7714 vulnerability can be exploited by sending a specifically crafted input image.
What is the severity of CVE-2018-7714?
The severity of CVE-2018-7714 is high with a CVSS score of 7.5.
Which version of OpenCV is affected by CVE-2018-7714?
OpenCV 3.4.1 is affected by CVE-2018-7714.
Is there a fix available for CVE-2018-7714?
Yes, a fix for CVE-2018-7714 is available. It is recommended to update to the latest version of OpenCV.