OpenCV 3.0.0 has a double free issue that allows attackers to execute arbitrary code.
The product calls free() twice on the same memory address, potentially leading to modification of unexpected memory locations.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Opencv | Opencv | 3.0.0 (including) | 3.0.0 (including) |
Opencv | Ubuntu | artful | * |
Opencv | Ubuntu | bionic | * |
Opencv | Ubuntu | devel | * |
Opencv | Ubuntu | precise | * |
Opencv | Ubuntu | trusty | * |
Opencv | Ubuntu | upstream | * |
Opencv | Ubuntu | xenial | * |
Opencv | Ubuntu | yakkety | * |
Opencv | Ubuntu | zesty | * |