VDB
Sign up
HIGH8.8

PYSEC-2026-2816

Double Free in OpenCV

Quick fix

PYSEC-2026-2816 — opencv-python: upgrade to the fixed version with the command below.

pip install --upgrade 'opencv-python>=3.3.1.11'

Details

OpenCV 3.0.0 has a double free issue that allows attackers to execute arbitrary code. This issue was fixed in OpenCV version 3.3.1 (corresponding to OpenCV-Python and and OpenCV-Contrib-Python 3.3.1.11).

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/opencv-python
Introduced in: 0Fixed in: 3.3.1.11
Fixpip install --upgrade 'opencv-python>=3.3.1.11'

References