OSV-2020-1113

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/oniguruma/OSV-2020-1113.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2020-1113
Published
2020-07-22T21:49:48.153542Z
Modified
2022-04-13T03:04:40.948922Z
Summary
Heap-use-after-free in node_min_byte_len
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=21998

Crash type: Heap-use-after-free READ 4
Crash state:
node_min_byte_len
tune_quant
tune_tree
References

Affected packages

OSS-Fuzz / oniguruma

Package

Name
oniguruma
Purl
pkg:generic/oniguruma

Affected ranges

Affected versions

v6.*

v6.9.5_rev1

Ecosystem specific

{
    "severity": "HIGH",
    "introduced_range": "unknown:efa4e3afb3926b2899e09a0d7c73bc7914e30c3a"
}

Database specific

{
    "fixed_range": "bcccd7929f794d3ab5cb59c9fb1146322cd5510b:dab2a5557c3142f7f9f5d7d897a4d37454b5a7ad"
}