Bug#872043: opencv: CVE-2016-1516 CVE-2016-1516

Salvatore Bonaccorso carnil at debian.org
Sun Aug 13 19:02:12 UTC 2017


Control: retitle -1 opencv: CVE-2016-1516 CVE-2016-1517

On Sun, Aug 13, 2017 at 08:39:14PM +0200, Salvatore Bonaccorso wrote:
> Source: opencv
> Version: 2.4.9.1+dfsg1-2
> Severity: important
> Tags: upstream security
> Forwarded: https://github.com/opencv/opencv/issues/5956
> 
> Hi,
> 
> the following vulnerabilities were published for opencv.
> 
> CVE-2016-1516[0]:
> | OpenCV 3.0.0 has a double free issue that allows attackers to execute
> | arbitrary code.
> 
> CVE-2016-1516[1]:
> | OpenCV 3.0.0 has a double free issue that allows attackers to execute
> | arbitrary code.

One of those should have been CVE-2016-1517.

Sorry about that. So to reiterate, the two CVEs are CVE-2016-1516 and
CVE-2016-1517.

Regards,
Salvatore



More information about the debian-science-maintainers mailing list