OSV-2021-1236

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/icu/OSV-2021-1236.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2021-1236
Published
2021-09-12T00:00:39.088726Z
Modified
2023-02-24T02:18:55.717212Z
Summary
UNKNOWN READ in icu_70::UCharsTrie::branchNext
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=38390

Crash type: UNKNOWN READ
Crash state:
icu_70::UCharsTrie::branchNext
icu_70::UCharsTrie::firstForCodePoint
icu_70::CollationIterator::nextCE32FromContraction
References

Affected packages

OSS-Fuzz / icu

Package

Name
icu
Purl
pkg:generic/icu

Affected ranges

Type
GIT
Repo
https://github.com/unicode-org/icu.git
Events

Affected versions

Other

cldr/2021-09-15
cldr/2021-09-29
cldr/2021-10-19
cldr/2021-10-25
cldr/2022-02-08
cldr/2022-02-22
cldr/2022-02-23
cldr/2022-03-30
cldr/2022-03-31
release-70-1
release-70-rc
release-71-1
release-71-rc

icu4x/2022-06-30/71.*

icu4x/2022-06-30/71.x

icu4x/2022-07-18/71.*

icu4x/2022-07-18/71.x

icu4x/2022-07-25/71.*

icu4x/2022-07-25/71.x

icu4x/2022-08-17/71.*

icu4x/2022-08-17/71.x

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

{
    "introduced_range": "0ec329c6e17539d7662942be09204a1d4190761e:b38a49fc7e89b86895ecbc67fcaf60ba8825a693"
}