PT-2021-18584 · Unknown · Vigra Computer Vision Library

Choongin Lee

·

Published

2021-04-06

·

Updated

2021-04-19

·

CVE-2021-30046

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions VIGRA Computer Vision Library version 1.11.1
Description The issue is related to a segmentation fault in the read image band() function, located in the impex.hxx file. It can be triggered by a crafted file, leading to a denial of service.
Recommendations For version 1.11.1, consider avoiding the use of the read image band() function until a patch is available. As a temporary workaround, restrict the processing of crafted files to minimize the risk of exploitation.

Exploit

Fix

Improper Handling of Exceptional Conditions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-30046

Affected Products

Vigra Computer Vision Library