OSV-2018-136

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/glib/OSV-2018-136.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2018-136
Published
2021-01-13T00:00:59.593904Z
Modified
2023-02-24T01:42:43.122045Z
Summary
Heap-buffer-overflow in fast_validate
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=10319

Crash type: Heap-buffer-overflow READ 1
Crash state:
fast_validate
g_utf8_validate
g_variant_serialiser_is_string
References

Affected packages

OSS-Fuzz / glib

Package

Name
glib
Purl
pkg:generic/glib

Affected ranges

Affected versions

2.*

2.57.3
2.58.0
2.58.1
2.58.2
2.58.3

Ecosystem specific

{
    "severity": "MEDIUM",
    "introduced_range": "8defa46e6ec16aa3722aa0ac0bc3db0fecd86c45:0d271223d894e9c69b7fa6b7983511f8ad770682"
}

Database specific

{
    "fixed_range": "da512adc34926d20bac929e51acefcb4d2c92a72:1564ef55896b37c469dc8ee230068488bfaf0871"
}