VYPR
High severity8.8NVD Advisory· Published Aug 15, 2017· Updated May 13, 2026

CVE-2017-12862

CVE-2017-12862

Description

In modules/imgcodecs/src/grfmt_pxm.cpp, the length of buffer AutoBuffer _src is small than expected, which will cause copy buffer overflow later. If the image is from remote, may lead to remote code execution or denial of service. This affects Opencv 3.3 and earlier.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
opencv-pythonPyPI
< 3.3.1.113.3.1.11
opencv-contrib-pythonPyPI
< 3.3.1.113.3.1.11

Affected products

3
  • cpe:2.3:a:opencv:opencv:*:*:*:*:*:*:*:*
    Range: <=3.3.0
  • cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
    • cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

7

News mentions

0

No linked articles in our index yet.