Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Linkai Zheng

#18060de 53,640
15CVSS total
Vulnerabilidades · 2
Alta
2
PT-2023-20537
7.5
2023-05-10
Opencv · Opencv · CVE-2023-2617
**Name of the Vulnerable Software and Affected Versions** OpenCV wechat qrcode Module versions up to 4.7.0 **Description** A problematic vulnerability was found in the OpenCV wechat qrcode Module, affecting the function `DecodedBitStreamParser::decodeByteSegment` of the file `qrcode/decoder/decoded bit stream parser.cpp`. This vulnerability leads to a null pointer dereference and can be exploited remotely. The exploit has been publicly disclosed. **Recommendations** To fix this issue, apply a patch to the affected version. As a temporary workaround, consider disabling the `DecodedBitStreamParser::decodeByteSegment` function until a patch is available.
PT-2023-20538
7.5
2023-05-10
Opencv · Opencv · CVE-2023-2618
**Name of the Vulnerable Software and Affected Versions** OpenCV wechat qrcode Module versions up to 4.7.0 **Description** A problematic issue has been found in the OpenCV wechat qrcode Module, affecting the function `DecodedBitStreamParser::decodeHanziSegment` of the file `qrcode/decoder/decoded bit stream parser.cpp`. This issue leads to a memory leak and can be exploited remotely. **Recommendations** For OpenCV wechat qrcode Module versions up to 4.7.0, it is recommended to apply a patch to fix this issue. As a temporary workaround, consider disabling the `DecodedBitStreamParser::decodeHanziSegment` function until a patch is available.