[Buildroot] [PATCH 1/1] package/opencv3: security bump to version 3.4.9

Peter Korsgaard peter at korsgaard.com
Sun Jan 12 10:55:40 UTC 2020


>>>>> "Fabrice" == Fabrice Fontaine <fontaine.fabrice at gmail.com> writes:

 > - Fix CVE-2019-14491: An issue was discovered in OpenCV before 3.4.7
 >   and 4.x before 4.1.1. There is an out of bounds read in the function
 >   cv::predictOrdered<cv::HaarEvaluator> in
 >   modules/objdetect/src/cascadedetect.hpp, which leads to denial of service.
 > - Fix CVE-2019-14492: An issue was discovered in OpenCV before 3.4.7
 >   and 4.x before 4.1.1. There is an out of bounds read/write in the
 >   function HaarEvaluator::OptFeature::calc in
 >   modules/objdetect/src/cascadedetect.hpp, which leads to denial of service.
 > - atomic workaround is not needed since version 3.4.8 and
 >   https://github.com/opencv/opencv/commit/464972855e25f71667009b8fe88092d11aab0297
 > - Update hash of license file (Xperience.AI added:
 >   https://github.com/opencv/opencv/commit/766465ce9483c20d54bfce422d285c077f6502bd)

 > Signed-off-by: Fabrice Fontaine <fontaine.fabrice at gmail.com>

Committed to 2019.02.x and 2019.11.x, thanks.

-- 
Bye, Peter Korsgaard


More information about the buildroot mailing list