CVE-2017-12864
published 2017-08-15CVE-2017-12864: In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function ReadNumber did not checkout the input length, which lead to integer overflow. If the image is from…
PriorityP344high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
2.70%
84.3th percentile
In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function ReadNumber did not checkout the input length, which lead to integer overflow. If the image is from remote, may lead to remote code execution or denial of service. This affects Opencv 3.3 and earlier.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | opencv | < opencv 3.2.0+dfsg-6 (bookworm) | opencv 3.2.0+dfsg-6 (bookworm) |
| opencv | opencv | <= 3.3.0 | — |
| opencv | opencv | >= 0 < 3.2.0+dfsg-6 | 3.2.0+dfsg-6 |
| opencv | opencv | >= 0 < 3.2.0+dfsg-6 | 3.2.0+dfsg-6 |
| opencv | opencv | >= 0 < 3.2.0+dfsg-6 | 3.2.0+dfsg-6 |
| opencv | opencv | >= 0 < 3.2.0+dfsg-6 | 3.2.0+dfsg-6 |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv8.8HIGH
vendor_debian8.8HIGH
vendor_redhat8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
opencv: Integer overflow in ReadNumber function in opencv/modules/imgcodecs/src/grfmt_pxm.cpp
vendor_redhat·2017-08-15·CVSS 8.8
CVE-2017-12864 [HIGH] CWE-190 opencv: Integer overflow in ReadNumber function in opencv/modules/imgcodecs/src/grfmt_pxm.cpp
opencv: Integer overflow in ReadNumber function in opencv/modules/imgcodecs/src/grfmt_pxm.cpp
In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function ReadNumber did not checkout the input length, which lead to integer overflow. If the image is from remote, may lead to remote code execution or denial of service. This affects Opencv 3.3 and earlier.
Package: opencv (Red Hat Enterprise Linux 6) - Under investigation
Package: opencv (Red Hat Enterprise Linux 7) - Under investigation
Debian
CVE-2017-12864: opencv - In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function ReadNumber did not check...
vendor_debian·2017·CVSS 8.8
CVE-2017-12864 [HIGH] CVE-2017-12864: opencv - In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function ReadNumber did not check...
In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function ReadNumber did not checkout the input length, which lead to integer overflow. If the image is from remote, may lead to remote code execution or denial of service. This affects Opencv 3.3 and earlier.
Scope: local
bookworm: resolved (fixed in 3.2.0+dfsg-6)
bullseye: resolved (fixed in 3.2.0+dfsg-6)
forky: resolved (fixed in 3.2.0+dfsg-6)
sid: resolved (fixed in 3.2.0+dfsg-6)
trixie: resolved (fixed in 3.2.0+dfsg-6)
OSV
Integer Overflow or Wraparound in OpenCV
osv·2021-10-12
CVE-2017-12864 [HIGH] Integer Overflow or Wraparound in OpenCV
Integer Overflow or Wraparound in OpenCV
In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function ReadNumber did not checkout the input length, which lead to integer overflow. If the image is from remote, may lead to remote code execution or denial of service. This affects OpenCV 3.3 (corresponding with OpenCV-Python version 3.3.0.9) and earlier.
GHSA
Integer Overflow or Wraparound in OpenCV
ghsa·2021-10-12
CVE-2017-12864 [HIGH] CWE-190 Integer Overflow or Wraparound in OpenCV
Integer Overflow or Wraparound in OpenCV
In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function ReadNumber did not checkout the input length, which lead to integer overflow. If the image is from remote, may lead to remote code execution or denial of service. This affects OpenCV 3.3 (corresponding with OpenCV-Python version 3.3.0.9) and earlier.
OSV
CVE-2017-12864: In opencv/modules/imgcodecs/src/grfmt_pxm
osv·2017-08-15·CVSS 8.8
CVE-2017-12864 [HIGH] CVE-2017-12864: In opencv/modules/imgcodecs/src/grfmt_pxm
In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function ReadNumber did not checkout the input length, which lead to integer overflow. If the image is from remote, may lead to remote code execution or denial of service. This affects Opencv 3.3 and earlier.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2017-12597 CVE-2017-12598 CVE-2017-12599 CVE-2017-12600 CVE-2017-12601 CVE-2017-12602 CVE-2017-12603 CVE-2017-12604 CVE-2017-12605 CVE-2017-12606 opencv: various flaws [fedora-all]
bugzilla·2017-08-22·CVSS 8.8
CVE-2017-12597 [HIGH] CVE-2017-12597 CVE-2017-12598 CVE-2017-12599 CVE-2017-12600 CVE-2017-12601 CVE-2017-12602 CVE-2017-12603 CVE-2017-12604 CVE-2017-12605 CVE-2017-12606 opencv: various flaws [fedora-all]
CVE-2017-12597 CVE-2017-12598 CVE-2017-12599 CVE-2017-12600 CVE-2017-12601 CVE-2017-12602 CVE-2017-12603 CVE-2017-12604 CVE-2017-12605 CVE-2017-12606 opencv: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixe
Bugzilla
CVE-2017-12862 CVE-2017-12863 CVE-2017-12864 opencv: various flaws [fedora-all]
bugzilla·2017-08-21·CVSS 8.8
CVE-2017-12862 [HIGH] CVE-2017-12862 CVE-2017-12863 CVE-2017-12864 opencv: various flaws [fedora-all]
CVE-2017-12862 CVE-2017-12863 CVE-2017-12864 opencv: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versio
Bugzilla
CVE-2017-12864 opencv: Integer overflow in ReadNumber function in opencv/modules/imgcodecs/src/grfmt_pxm.cpp
bugzilla·2017-08-21·CVSS 8.8
CVE-2017-12864 [HIGH] CVE-2017-12864 opencv: Integer overflow in ReadNumber function in opencv/modules/imgcodecs/src/grfmt_pxm.cpp
CVE-2017-12864 opencv: Integer overflow in ReadNumber function in opencv/modules/imgcodecs/src/grfmt_pxm.cpp
In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function ReadNumber did
not checkout the input length, which lead to integer overflow. If the
image is from remote, may lead to remote code execution or denial of
service. This affects Opencv 3.3 and earlier.
Upstream bug:
https://github.com/opencv/opencv/issues/9372
Discussion:
Created opencv tracking bugs for this issue:
Affects: fedora-all [bug 1483700]
https://github.com/opencv/opencv/issues/9372https://lists.debian.org/debian-lts-announce/2018/07/msg00030.htmlhttps://lists.debian.org/debian-lts-announce/2021/10/msg00028.htmlhttps://security.gentoo.org/glsa/201712-02https://github.com/opencv/opencv/issues/9372https://lists.debian.org/debian-lts-announce/2018/07/msg00030.htmlhttps://lists.debian.org/debian-lts-announce/2021/10/msg00028.htmlhttps://security.gentoo.org/glsa/201712-02
2017-08-15
Published