OSV-2022-1207

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/apache-commons-imaging/OSV-2022-1207.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2022-1207
Published
2022-11-25T13:00:24.374896Z
Modified
2022-11-25T13:00:24.375136Z
Summary
Security exception in java.desktop/java.awt.image.DataBufferInt.<init>
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=53708

Crash type: Security exception
Crash state:
java.desktop/java.awt.image.DataBufferInt.<init>
java.desktop/java.awt.image.Raster.createPackedRaster
org.apache.commons.imaging.formats.jpeg.decoder.JpegDecoder.visitSOS
References

Affected packages

OSS-Fuzz / apache-commons-imaging

Package

Name
apache-commons-imaging
Purl
pkg:generic/apache-commons-imaging

Affected ranges

Type
GIT
Repo
https://gitbox.apache.org/repos/asf/commons-imaging.git
Events
Introduced
b5026706fa6811353a8b53ece95d89f349b81bd1
Fixed
a6ccaa76fdf1627a402eb7a2b965e457a7733968

Ecosystem specific

{
    "severity": "LOW"
}

Database specific

{
    "introduced_range": "ee635db6e144fd5c4c5be293338c9fc5abe6cc96:01189e72cd64abea8664953550ea75c5a2b94d3f",
    "fixed_range": "74d4c28893fefe08c6e24cbd63537051c745093d:a6ccaa76fdf1627a402eb7a2b965e457a7733968"
}