CVE-2019-15939

An issue was discovered in OpenCV 4.1.0. There is a divide-by-zero error in cv::HOGDescriptor::getDescriptorSize in modules/objdetect/src/hog.cpp.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.9 MEDIUM
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 72%
Affected Products (NVD)
VendorProductVersion
opencvopencv
𝑥
≤ 4.1.0
opensuseleap
15.1
debiandebian_linux
9.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
opencv
bookworm
4.6.0+dfsg-12
fixed
bullseye
4.5.1+dfsg-5
fixed
buster
no-dsa
jessie
no-dsa
sid
4.6.0+dfsg-14
fixed
trixie
4.6.0+dfsg-14
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
opencv
bionic
Fixed 3.2.0+dfsg-4ubuntu0.1+esm3
released
disco
ignored
eoan
ignored
focal
not-affected
groovy
not-affected
hirsute
not-affected
impish
not-affected
jammy
not-affected
kinetic
not-affected
lunar
not-affected
trusty
Fixed 2.4.8+dfsg1-2ubuntu1.2+esm1
released
xenial
Fixed 2.4.9.1+dfsg-1.5ubuntu1.1+esm1
released
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
libopencv3_3
suse enterprise desktop 15
3.3.1-6.6.1
fixed
suse enterprise desktop 15 SP1
3.3.1-6.6.1
fixed
suse enterprise desktop 15 SP2
3.3.1-6.6.1
fixed
suse enterprise desktop 15 SP3
3.3.1-6.6.1
fixed
suse enterprise sap 15
3.3.1-6.6.1
fixed
suse enterprise sap 15 SP1
3.3.1-6.6.1
fixed
suse enterprise sap 15 SP2
3.3.1-6.6.1
fixed
suse enterprise sap 15 SP3
3.3.1-6.6.1
fixed
suse enterprise server 15
3.3.1-6.6.1
fixed
suse enterprise server 15 SP1
3.3.1-6.6.1
fixed
suse enterprise server 15 SP2
3.3.1-6.6.1
fixed
suse enterprise server 15 SP3
3.3.1-6.6.1
fixed
suse enterprise workstation 15
3.3.1-6.6.1
fixed
suse enterprise workstation 15 SP1
3.3.1-6.6.1
fixed
suse enterprise workstation 15 SP2
3.3.1-6.6.1
fixed
suse enterprise workstation 15 SP3
3.3.1-6.6.1
fixed
libopencv3_4
suse enterprise desktop 15 SP4
3.4.16-150400.1.9
fixed
suse enterprise sap 15 SP4
3.4.16-150400.1.9
fixed
suse enterprise server 15 SP4
3.4.16-150400.1.9
fixed
suse enterprise workstation 15 SP4
3.4.16-150400.1.9
fixed
libopencv405
suse enterprise desktop 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise sap 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise server 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise workstation 15 SP4
4.5.5-150400.1.28
fixed
libopencv_aruco405
suse enterprise desktop 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise sap 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise server 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise workstation 15 SP4
4.5.5-150400.1.28
fixed
libopencv_face405
suse enterprise desktop 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise sap 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise server 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise workstation 15 SP4
4.5.5-150400.1.28
fixed
libopencv_highgui405
suse enterprise desktop 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise sap 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise server 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise workstation 15 SP4
4.5.5-150400.1.28
fixed
libopencv_imgcodecs405
suse enterprise desktop 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise sap 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise server 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise workstation 15 SP4
4.5.5-150400.1.28
fixed
libopencv_objdetect405
suse enterprise desktop 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise sap 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise server 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise workstation 15 SP4
4.5.5-150400.1.28
fixed
libopencv_superres405
suse enterprise desktop 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise sap 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise server 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise workstation 15 SP4
4.5.5-150400.1.28
fixed
libopencv_videoio405
suse enterprise desktop 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise sap 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise server 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise workstation 15 SP4
4.5.5-150400.1.28
fixed
libopencv_videostab405
suse enterprise desktop 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise sap 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise server 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise workstation 15 SP4
4.5.5-150400.1.28
fixed
libopencv_ximgproc405
suse enterprise desktop 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise sap 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise server 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise workstation 15 SP4
4.5.5-150400.1.28
fixed
opencv
suse enterprise desktop 15
3.3.1-6.6.1
fixed
suse enterprise desktop 15 SP1
3.3.1-6.6.1
fixed
suse enterprise desktop 15 SP2
3.3.1-6.6.1
fixed
suse enterprise desktop 15 SP3
3.3.1-6.6.1
fixed
suse enterprise desktop 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise sap 15
3.3.1-6.6.1
fixed
suse enterprise sap 15 SP1
3.3.1-6.6.1
fixed
suse enterprise sap 15 SP2
3.3.1-6.6.1
fixed
suse enterprise sap 15 SP3
3.3.1-6.6.1
fixed
suse enterprise sap 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise server 15
3.3.1-6.6.1
fixed
suse enterprise server 15 SP1
3.3.1-6.6.1
fixed
suse enterprise server 15 SP2
3.3.1-6.6.1
fixed
suse enterprise server 15 SP3
3.3.1-6.6.1
fixed
suse enterprise server 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise workstation 15
3.3.1-6.6.1
fixed
suse enterprise workstation 15 SP1
3.3.1-6.6.1
fixed
suse enterprise workstation 15 SP2
3.3.1-6.6.1
fixed
suse enterprise workstation 15 SP3
3.3.1-6.6.1
fixed
suse enterprise workstation 15 SP4
4.5.5-150400.1.28
fixed
opencv-devel
suse enterprise desktop 15
3.3.1-6.6.1
fixed
suse enterprise desktop 15 SP1
3.3.1-6.6.1
fixed
suse enterprise desktop 15 SP2
3.3.1-6.6.1
fixed
suse enterprise desktop 15 SP3
3.3.1-6.6.1
fixed
suse enterprise desktop 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise sap 15
3.3.1-6.6.1
fixed
suse enterprise sap 15 SP1
3.3.1-6.6.1
fixed
suse enterprise sap 15 SP2
3.3.1-6.6.1
fixed
suse enterprise sap 15 SP3
3.3.1-6.6.1
fixed
suse enterprise sap 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise server 15
3.3.1-6.6.1
fixed
suse enterprise server 15 SP1
3.3.1-6.6.1
fixed
suse enterprise server 15 SP2
3.3.1-6.6.1
fixed
suse enterprise server 15 SP3
3.3.1-6.6.1
fixed
suse enterprise server 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise workstation 15
3.3.1-6.6.1
fixed
suse enterprise workstation 15 SP1
3.3.1-6.6.1
fixed
suse enterprise workstation 15 SP2
3.3.1-6.6.1
fixed
suse enterprise workstation 15 SP3
3.3.1-6.6.1
fixed
suse enterprise workstation 15 SP4
4.5.5-150400.1.28
fixed
opencv3
suse enterprise desktop 15 SP4
3.4.16-150400.1.9
fixed
suse enterprise sap 15 SP4
3.4.16-150400.1.9
fixed
suse enterprise server 15 SP4
3.4.16-150400.1.9
fixed
suse enterprise workstation 15 SP4
3.4.16-150400.1.9
fixed
opencv3-devel
suse enterprise desktop 15 SP4
3.4.16-150400.1.9
fixed
suse enterprise sap 15 SP4
3.4.16-150400.1.9
fixed
suse enterprise server 15 SP4
3.4.16-150400.1.9
fixed
suse enterprise workstation 15 SP4
3.4.16-150400.1.9
fixed
opencv4-cascades-data
suse enterprise desktop 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise sap 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise server 15 SP4
4.5.5-150400.1.28
fixed
suse enterprise workstation 15 SP4
4.5.5-150400.1.28
fixed