OSV-2021-958

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/mdbtools/OSV-2021-958.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2021-958
Published
2021-07-11T00:01:21.634442Z
Modified
2022-04-13T03:31:25.487524Z
Summary
Dynamic-stack-buffer-overflow in mdb_numeric_to_string
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=35972

Crash type: Dynamic-stack-buffer-overflow WRITE 16
Crash state:
mdb_numeric_to_string
mdb_xfer_bound_data
_mdb_attempt_bind
References

Affected packages

OSS-Fuzz / mdbtools

Package

Name
mdbtools
Purl
pkg:generic/mdbtools

Affected ranges

Affected versions

v0.*

v0.9.2
v0.9.2-beta1
v0.9.2-beta2
v0.9.2-beta3
v0.9.2-beta4
v0.9.2-beta5
v0.9.2-beta6
v0.9.3-beta1
v0.9.3-beta2
v0.9.3-beta3
v0.9.3-beta4

Ecosystem specific

{
    "severity": null
}

Database specific

{
    "fixed_range": "373b7ff4c4daf887269c078407cb1338942c4ea6:ab9e4088a9cbcf3e0aa0053437327287e2869756"
}