OSV-2021-1003

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/mdbtools/OSV-2021-1003.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2021-1003
Published
2021-07-15T00:00:10.906210Z
Modified
2022-04-13T03:34:27.957616Z
Summary
Dynamic-stack-buffer-overflow in mdb_numeric_to_string
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=36187

Crash type: Dynamic-stack-buffer-overflow WRITE 16
Crash state:
mdb_numeric_to_string
mdb_xfer_bound_data
_mdb_attempt_bind
References

Affected packages

OSS-Fuzz / mdbtools

Package

Name
mdbtools
Purl
pkg:generic/mdbtools

Affected ranges

Affected versions

v0.*

v0.9.2
v0.9.2-beta1
v0.9.2-beta2
v0.9.2-beta3
v0.9.2-beta4
v0.9.2-beta5
v0.9.2-beta6
v0.9.3-beta1
v0.9.3-beta2
v0.9.3-beta3
v0.9.3-beta4

Ecosystem specific

{
    "severity": null
}

Database specific

{
    "fixed_range": "373b7ff4c4daf887269c078407cb1338942c4ea6:ab9e4088a9cbcf3e0aa0053437327287e2869756"
}