Logo
vulnerabilityCVE-2023-2617
Name
CVE-2023-2617
Source
NVD ( link)Debian ( link)
Description
A vulnerability classified as problematic was found in OpenCV wechat_qrcode Module up to 4.7.0. Affected by this vulnerability is the function DecodedBitStreamParser::decodeByteSegment of the file qrcode/decoder/decoded_bit_stream_parser.cpp. The manipulation leads to null pointer dereference. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-228547.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
opencv
Patched

Vulnerability Ratings#


5.3
CVSSv31
7.5
CVSSv31
5
CVSSv2
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
3.4.19
Not Affected
buildroot
2025.02.x
4.12.0
Not Affected
buildroot
master
4.13.0
Not Affected
yocto
master
4.13.0
Not Affected
yocto
scarthgap
4.9.0
Not Affected

Resolved with patches#


opencv (yocto:kirkstone)

#
Title
Author
Resolve
1
Patch #1
Soumya <soumya.sambu@windriver.com>
CVE-2023-2617