Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

There is a vulnerability in the library that Opencv-python depends on. #614

Closed
4 tasks
Norman416 opened this issue Jan 18, 2022 · 3 comments
Closed
4 tasks
Assignees

Comments

@Norman416
Copy link

Norman416 commented Jan 18, 2022

Expected behaviour

I use opencv-python to do some image and video processing

Actual behaviour

Write here what went wrong.

Steps to reproduce

Issue submission checklist
  • This is not a generic OpenCV usage question (looking for help for coding, other usage questions, homework etc.)
  • I have read the README of this repository and understand that this repository provides only an automated build toolchain for OpenCV Python packages (there is no actual OpenCV code here)
  • The issue is related to the build scripts in this repository, to the pre-built binaries or is a feature request (such as "please enable this additional dependency")
  • I'm using the latest version of opencv-python
@asenyaev
Copy link
Contributor

Hi @Norman416!

I have updated a docker image to use the latest releases of these libraries:

  • libpng 1.6.37
  • ffmpeg 4.4.1
  • openssl 1.1.1m

Could you tell me, how I can check a package on a vulnerability?

@Norman416
Copy link
Author

The tool I use is woodpecker.
https://woodpecker.co/vulnerability-disclosure-program/

@asmorkalov
Copy link
Collaborator

Done with releases 4.5.5.64 and 3.4.17.63.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants