GHSL-2025-057: Heap buffer write in OpenCV - CVE-2025-53644
Published Jul 17, 2025
·Updated
An uninitialized pointer variable on stack may lead to arbitrary heap buffer write when reading crafted JPEG images.
Affected Software
1 affected component
OpenCV Opencv
Event History
Jul 17, 2025
Advisory Published
via GitHub Security Lab·12:00 AM
Data Sourced
via GitHub Security Lab·12:00 AM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of GHSL-2025-057?
The severity of GHSL-2025-057 is rated as 70.
2
How do I fix GHSL-2025-057?
To fix GHSL-2025-057, update OpenCV to the latest patched version addressing the heap buffer write vulnerability.
3
What component is affected by GHSL-2025-057?
GHSL-2025-057 affects the OpenCV library, specifically in its handling of JPEG images.
4
What type of vulnerability is GHSL-2025-057?
GHSL-2025-057 is a heap buffer write vulnerability due to an uninitialized pointer variable.
5
What can be exploited in GHSL-2025-057?
GHSL-2025-057 can be exploited to cause arbitrary writes to the heap when processing specially crafted JPEG images.