CVE-2019-16249: Medium severity opencv vulnerability
Published Sep 11, 2019
·Updated
Last updated 4 February 2025
Other sources
OpenCV 4.1.1 has an out-of-bounds read in halbaseline::vload in core/hal/intrinsse.hpp when called from computeSSDMeanNorm in modules/video/src/disflow.cpp.
— MITRE
Affected Software
3 affected componentsFixes available
OpenCV Opencv=4.1.1
redhat/opencv<4.1.2
4.1.2
debian/opencv
4.5.1+dfsg-54.6.0+dfsg-124.6.0+dfsg-144.10.0+dfsg-2
Remediation
Patch Available
Event History
Sep 11, 2019
CVE Published
via MITRE·10:19 PM
Data Sourced
via MITRE·10:19 PM
Description
Sep 17, 2019
Data Sourced
via Red Hat·03:13 AM
DescriptionSeverityAffected Software
Feb 4, 2025
Data Sourced
via Launchpad·04:11 PM
Description
Feb 8, 2025
Data Sourced
via Ubuntu·04:11 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this OpenCV vulnerability?
The vulnerability ID for this OpenCV vulnerability is CVE-2019-16249.
2
What is the severity of CVE-2019-16249?
The severity of CVE-2019-16249 is medium with a CVSS score of 5.3.
3
What is the affected software and version for CVE-2019-16249?
The affected software and version for CVE-2019-16249 is OpenCV version 4.1.1.
4
How can I fix CVE-2019-16249?
To fix CVE-2019-16249, update OpenCV to version 4.1.2 or above.
5
Where can I find more information about CVE-2019-16249?
You can find more information about CVE-2019-16249 in the following references: [Bugzilla](https://bugzilla.redhat.com/show_bug.cgi?id=1752702), [GitHub](https://github.com/opencv/opencv/issues/15481), [Bugzilla](https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=1752703).