CVE-2019-14493: Null Pointer Dereference
Published Aug 1, 2019
·Updated
An issue was discovered in OpenCV before 4.1.1. There is a NULL pointer dereference in the function cv::XMLParser::parse at modules/core/src/persistence.cpp.
Affected Software
3 affected componentsFixes available
debian/opencv
4.5.1+dfsg-54.6.0+dfsg-124.6.0+dfsg-144.10.0+dfsg-2
OpenCV Opencv<4.1.1
Debian Debian Linux=9.0
Event History
Aug 1, 2019
CVE Published
via MITRE·04:05 PM
Data Sourced
via MITRE·04:05 PM
Description
Feb 4, 2025
Data Sourced
via Ubuntu·04:10 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Launchpad·04:11 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-14493.
2
What is the severity of CVE-2019-14493?
The severity of CVE-2019-14493 is high with a severity value of 7.5.
3
What software is affected by CVE-2019-14493?
OpenCV versions up to and excluding 4.1.1 and Debian Linux 9.0 are affected by CVE-2019-14493.
4
What is the CWE ID for this vulnerability?
The CWE ID for this vulnerability is 476.
5
How can I fix CVE-2019-14493?
To fix CVE-2019-14493, update OpenCV to version 4.1.1 or later and update Debian Linux version 9.0 to the latest available version.