tesseract-ocr/tesseract
Releases68
Frequency3 months 1 week
Last Release
Stars75.5K
Tesseract Open Source OCR Engine (main repository)
CVE History
| CVE | Affected | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|---|
| = 5.0.0 | 6.5 MEDIUM | — | ||
An issue in the Leptonica linked library (v1.79.0) allows attackers to cause an arithmetic exception leading to a Denial of Service (DoS) via a crafted JPEG file. | ||||
| — | 7.8 HIGH | 6.8 MEDIUM | ||
Tesseract OCR 5.0.0-alpha-20201231 has a one_ell_conflict use-after-free during a strpbrk call. | ||||
| = 2.04, = 2.03 | 4.7 MEDIUM | 6.3 MEDIUM | ||
In tesseract 2.03 and 2.04, an attacker can rewrite an arbitrary user file by guessing the PID and creating a link to the user's file. | ||||