OSV-2020-1892

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/stb/OSV-2020-1892.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2020-1892
Published
2020-10-02T00:00:07.829126Z
Modified
2022-04-13T03:04:40.816714Z
Summary
Use-of-uninitialized-value in stbi__expand_png_palette
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=23234

Crash type: Use-of-uninitialized-value
Crash state:
stbi__expand_png_palette
stbi__parse_png_file
stbi__do_png
References

Affected packages

OSS-Fuzz / stb

Package

Name
stb
Purl
pkg:generic/stb

Affected ranges

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

{
    "fixed_range": "f54acd4e13430c5122cab4ca657705c84aa61b08:b42009b3b9d4ca35bc703f5310eedc74f584be58"
}