First published: Thu Aug 01 2019(Updated: )
An issue was discovered in OpenCV before 3.4.7 and 4.x before 4.1.1. There is an out of bounds read in the function cv::predictOrdered<cv::HaarEvaluator> in modules/objdetect/src/cascadedetect.hpp, which leads to denial of service.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Opencv Opencv | <3.4.7 | |
Opencv Opencv | >=4.0.0<4.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this OpenCV issue is CVE-2019-14491.
The severity of CVE-2019-14491 is high, with a severity value of 8.2.
The affected software for CVE-2019-14491 is OpenCV versions before 3.4.7 and 4.x before 4.1.1.
The CWE ID for CVE-2019-14491 is CWE-125.
To fix the CVE-2019-14491 vulnerability, it is recommended to update OpenCV to version 3.4.7 or 4.1.1 or later.