CVE-2023-2617: OpenCV wechat_qrcode Module decoded_bit_stream_parser.cpp decodeByteSegment null pointer dereference
A vulnerability classified as problematic was found in OpenCV wechatqrcode Module up to 4.7.0. Affected by this vulnerability is the function DecodedBitStreamParser::decodeByteSegment of the file qrcode/decoder/decodedbitstreamparser.cpp. The manipulation leads to null pointer dereference. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-228547.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID of this OpenCV issue?
The vulnerability ID of this OpenCV issue is CVE-2023-2617.
What is the severity of CVE-2023-2617?
The severity of CVE-2023-2617 is high with a severity score of 7.5.
Which module of OpenCV is affected by CVE-2023-2617?
The wechat_qrcode Module of OpenCV is affected by CVE-2023-2617.
What is the file and function affected by CVE-2023-2617?
The file and function affected by CVE-2023-2617 are decoded_bit_stream_parser.cpp and DecodedBitStreamParser::decodeByteSegment respectively.
How can I fix the vulnerability in OpenCV wechat_qrcode Module?
To fix the vulnerability in OpenCV wechat_qrcode Module, you should update to version 4.7.0 or later.