package/opencv3: security bump to version 3.4.9
authorFabrice Fontaine <fontaine.fabrice@gmail.com>
Sat, 11 Jan 2020 16:02:53 +0000 (17:02 +0100)
committerPeter Korsgaard <peter@korsgaard.com>
Sat, 11 Jan 2020 21:39:07 +0000 (22:39 +0100)
commitf6fb2cae0691d25b034b12a16261ee26096db7d1
tree57ddbfd4cc942680dacc7e2957583dfb71333974
parentcc9a4ac60023ad6449f43335f0e16a5c35824e26
package/opencv3: security bump to version 3.4.9

- Fix CVE-2019-14491: An issue was discovered in OpenCV before 3.4.7
  and 4.x before 4.1.1. There is an out of bounds read in the function
  cv::predictOrdered<cv::HaarEvaluator> in
  modules/objdetect/src/cascadedetect.hpp, which leads to denial of service.
- Fix CVE-2019-14492: An issue was discovered in OpenCV before 3.4.7
  and 4.x before 4.1.1. There is an out of bounds read/write in the
  function HaarEvaluator::OptFeature::calc in
  modules/objdetect/src/cascadedetect.hpp, which leads to denial of service.
- atomic workaround is not needed since version 3.4.8 and
  https://github.com/opencv/opencv/commit/464972855e25f71667009b8fe88092d11aab0297
- Update hash of license file (Xperience.AI added:
  https://github.com/opencv/opencv/commit/766465ce9483c20d54bfce422d285c077f6502bd)

Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/opencv3/opencv3.hash
package/opencv3/opencv3.mk