CVE-2023-2618: OpenCV wechat_qrcode Module decoded_bit_stream_parser.cpp decodeHanziSegment memory leak
A vulnerability, which was classified as problematic, has been found in OpenCV wechatqrcode Module up to 4.7.0. Affected by this issue is the function DecodedBitStreamParser::decodeHanziSegment of the file qrcode/decoder/decodedbitstreamparser.cpp. The manipulation leads to memory leak. The attack may be launched remotely. The name of the patch is 2b62ff6181163eea029ed1cab11363b4996e9cd6. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-228548.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2023-2618.
What is the title of the vulnerability?
The title of the vulnerability is 'OpenCV wechat_qrcode Module decoded_bit_stream_parser.cpp decodeHanziSegment memory leak'.
What is the severity of CVE-2023-2618?
The severity of CVE-2023-2618 is high with a CVSS score of 7.5.
How does CVE-2023-2618 affect OpenCV?
CVE-2023-2618 affects OpenCV wechat_qrcode Module up to version 4.7.0.
How can I fix the CVE-2023-2618 vulnerability?
To fix the CVE-2023-2618 vulnerability, it is recommended to update OpenCV to a version higher than 4.7.0.