OpenCV wechat_qrcode Module decoded_bit_stream_parser.cpp decodeHanziSegment memory leak
CVE-2023-2618
7.5HIGH
What is CVE-2023-2618?
A memory leak vulnerability has been identified in the OpenCV wechat_qrcode Module affecting versions up to 4.7.0. This issue occurs within the DecodedBitStreamParser::decodeHanziSegment function, located in the qrcode/decoder/decoded_bit_stream_parser.cpp file. An attacker may exploit this vulnerability remotely, potentially leading to degraded system performance or resource exhaustion. To mitigate this risk, it is crucial to apply the available patch (commit ID: 2b62ff6181163eea029ed1cab11363b4996e9cd6) as soon as possible.
Affected Version(s)
wechat_qrcode Module 4.0
wechat_qrcode Module 4.1
wechat_qrcode Module 4.2
