OSV-2021-631

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/libavc/OSV-2021-631.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2021-631
Published
2021-04-13T00:00:57.946Z
Modified
2022-04-13T03:04:35.482215Z
Summary
Heap-buffer-overflow in ih264d_decode_slice_thread
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=33167

Crash type: Heap-buffer-overflow READ 4
Crash state:
ih264d_decode_slice_thread
ih264d_decode_picture_thread
clone
References

Affected packages

OSS-Fuzz / libavc

Package

Name
libavc
Purl
pkg:generic/libavc

Affected ranges

Type
GIT
Repo
https://android.googlesource.com/platform/external/libavc
Events

Affected versions

android-11.*

android-11.0.0_r18
android-11.0.0_r19
android-11.0.0_r20
android-11.0.0_r21
android-11.0.0_r22
android-11.0.0_r23
android-11.0.0_r24
android-11.0.0_r26
android-11.0.0_r27
android-11.0.0_r28
android-11.0.0_r29
android-11.0.0_r38
android-11.0.0_r39
android-11.0.0_r40
android-11.0.0_r43
android-11.0.0_r46

android-12.*

android-12.0.0_r1
android-12.0.0_r10
android-12.0.0_r11
android-12.0.0_r12
android-12.0.0_r13
android-12.0.0_r14
android-12.0.0_r15
android-12.0.0_r2
android-12.0.0_r3
android-12.0.0_r4
android-12.0.0_r5
android-12.0.0_r6
android-12.0.0_r7
android-12.0.0_r8
android-12.0.0_r9

android-cts-12.*

android-cts-12.0_r1

android-mainline-11.*

android-mainline-11.0.0_r15
android-mainline-11.0.0_r23
android-mainline-11.0.0_r35
android-mainline-11.0.0_r44

android-platform-12.*

android-platform-12.0.0_r1

Other

android-s-beta-1
android-s-beta-2
android-s-beta-3
android-s-beta-4
android-s-beta-5
android-s-preview-1
android-s-v2-preview-1

android-vts-12.*

android-vts-12.0_r1

platform-tools-29.*

platform-tools-29.0.1
platform-tools-29.0.2
platform-tools-29.0.3
platform-tools-29.0.4
platform-tools-29.0.5
platform-tools-29.0.6

platform-tools-30.*

platform-tools-30.0.0
platform-tools-30.0.1
platform-tools-30.0.2
platform-tools-30.0.3
platform-tools-30.0.4
platform-tools-30.0.5

platform-tools-31.*

platform-tools-31.0.0
platform-tools-31.0.1
platform-tools-31.0.2
platform-tools-31.0.3

Ecosystem specific

{
    "severity": "HIGH"
}