OSV-2021-947

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/sql-parser/OSV-2021-947.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2021-947
Published
2021-07-10T00:01:12.069383Z
Modified
2022-04-13T03:04:30.768366Z
Summary
Dynamic-stack-buffer-overflow in hsql::SQLParserResult::addStatement
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=35946

Crash type: Dynamic-stack-buffer-overflow WRITE 8
Crash state:
hsql::SQLParserResult::addStatement
hsql_parse
hsql::SQLParser::parse
References

Affected packages

OSS-Fuzz / sql-parser

Package

Name
sql-parser
Purl
pkg:generic/sql-parser

Ecosystem specific

{
    "severity": null,
    "introduced_range": "55f9dd2a6d23ddb26d8371961b9a51beb79fc5fb:6c9bb2e4d6d312553185feea2173acc7fe0dabdb"
}

Database specific

{
    "fixed_range": "6c9bb2e4d6d312553185feea2173acc7fe0dabdb:e52893244f40dab90888f2990356c40a0ca1cf5e"
}