OSV-2021-273

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/usrsctp/OSV-2021-273.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2021-273
Published
2021-02-04T00:01:00.672451Z
Modified
2022-04-13T03:04:42.633819Z
Summary
Heap-use-after-free in sctp_sorecvmsg
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=30215

Crash type: Heap-use-after-free WRITE 4
Crash state:
sctp_sorecvmsg
usrsctp_recvv
handle_upcall
References

Affected packages

OSS-Fuzz / usrsctp

Package

Name
usrsctp
Purl
pkg:generic/usrsctp

Affected ranges

Ecosystem specific

{
    "severity": "HIGH"
}

Database specific

{
    "fixed_range": "a6647318b57c0a05d590c8c21fc22aba87f08749:dcd2f56b2152b33fa3e49e7c2a6168dd0c1e56d7"
}