OSV-2020-1192

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/libheif/OSV-2020-1192.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2020-1192
Published
2020-07-22T21:49:55.027546Z
Modified
2022-04-13T03:04:32.436045Z
Summary
Index-out-of-bounds in decoder_context::has_sps
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=13591

Crash type: Index-out-of-bounds
Crash state:
decoder_context::has_sps
pic_parameter_set::read
decoder_context::read_pps_NAL
References

Affected packages

OSS-Fuzz / libheif

Package

Name
libheif
Purl
pkg:generic/libheif

Affected ranges

Type
GIT
Repo
https://github.com/strukturag/libheif.git
Events

Ecosystem specific

{
    "severity": "MEDIUM",
    "introduced_range": "unknown:0acdca433f338f1f378f6f104e72f5f95c4f8568",
    "fixed_range": "a78ec32c9fda3b46d63c08b37f0cf5ffab9a98f9:a691e7ac53b31d1145a6c1210f692dbc9050809e"
}