In sam2p 0.49.3, there is an invalid read of size 2 in the parsergb function in inxpm.cpp. However, this can also cause a write to an illegal address.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-14637.json"