OSV-2021-1607

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/libjxl/OSV-2021-1607.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2021-1607
Published
2021-11-22T00:01:39.687600Z
Modified
2022-04-13T03:04:41.817334Z
Summary
Container-overflow in void jxl::CopyImageTo<int>
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=41235

Crash type: Container-overflow READ 4
Crash state:
void jxl::CopyImageTo<int>
jxl::ModularFrameDecoder::DecodeGroup
jxl::FrameDecoder::ProcessACGroup
References

Affected packages

OSS-Fuzz / libjxl

Package

Name
libjxl
Purl
pkg:generic/libjxl

Affected ranges

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

{
    "fixed_range": "4861a954e852a02d9347e3c416e70bb0e25b627f:43818e00ea893a8eea62ee3525f42203c141e946"
}