← Back to browse · API

CVE-2019-5063

Severity
HIGH
CVSS
8.8
EPSS
0.20947
Risk score
42.53
CISA KEV
No
PoC
No
Published
2020-01-03
Modified
2024-08-04
First seen
2026-08-07
Aliases
EUVD-2021-2226, GHSA-M6VM-8G8V-XFJH, PYSEC-2026-2801, PYSEC-2026-2826, PYSEC-2026-2840, PYSEC-2026-724
Products
OpenCV:opencv OpenCV 4.1.0
Sources
euvd EUVD-2021-2226

Description

An exploitable heap buffer overflow vulnerability exists in the data structure persistence functionality of OpenCV 4.1.0. A specially crafted XML file can cause a buffer overflow, resulting in multiple heap corruptions and potential code execution. An attacker can provide a specially crafted file to trigger this vulnerability.

References