[Buildroot] [PATCH 1/1] package/opencv3: security bump to version 3.4.9
Peter Korsgaard
peter at korsgaard.com
Sun Jan 12 10:55:40 UTC 2020
>>>>> "Fabrice" == Fabrice Fontaine <fontaine.fabrice at gmail.com> writes:
> - Fix CVE-2019-14491: An issue was discovered in OpenCV before 3.4.7
> and 4.x before 4.1.1. There is an out of bounds read in the function
> cv::predictOrdered<cv::HaarEvaluator> in
> modules/objdetect/src/cascadedetect.hpp, which leads to denial of service.
> - Fix CVE-2019-14492: An issue was discovered in OpenCV before 3.4.7
> and 4.x before 4.1.1. There is an out of bounds read/write in the
> function HaarEvaluator::OptFeature::calc in
> modules/objdetect/src/cascadedetect.hpp, which leads to denial of service.
> - atomic workaround is not needed since version 3.4.8 and
> https://github.com/opencv/opencv/commit/464972855e25f71667009b8fe88092d11aab0297
> - Update hash of license file (Xperience.AI added:
> https://github.com/opencv/opencv/commit/766465ce9483c20d54bfce422d285c077f6502bd)
> Signed-off-by: Fabrice Fontaine <fontaine.fabrice at gmail.com>
Committed to 2019.02.x and 2019.11.x, thanks.
--
Bye, Peter Korsgaard
More information about the buildroot
mailing list