PT-2026-59470 · Pypi · Opencv-Python

Published

2026-07-09

·

Updated

2026-07-09

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
In opencv/modules/imgcodecs/src/grfmt pxm.cpp, function PxMDecoder::readData has an integer overflow when calculate src pitch. If the image is from remote, may lead to remote code execution or denial of service. This affects OpenCV 3.3 (corresponding to OpenCV-Python 3.3.0.9) and earlier.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

PYSEC-2026-2832

Affected Products

Opencv-Python