OSV-2022-218

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/ghostscript/OSV-2022-218.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2022-218
Published
2022-03-06T00:01:40.010815Z
Modified
2022-04-13T03:04:34.729007Z
Summary
UNKNOWN READ in pdfi_read_cff_font
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=45222

Crash type: UNKNOWN READ
Crash state:
pdfi_read_cff_font
pdfi_load_font
pdfi_read_type0_font
References

Affected packages

OSS-Fuzz / ghostscript

Package

Name
ghostscript
Purl
pkg:generic/ghostscript

Affected ranges

Type
GIT
Repo
git://git.ghostscript.com/ghostpdl.git
Events
Introduced
651a93ca20079a446f4338f91a8b3b05bbc5258c
Fixed
edb02250825f20203c137886c5253a908b536985
Introduced
351875730056edf20b282b2cf88c3333a91ba2ac
Fixed
7bb076b06cba409abf52f935440dea5fbbd9c15b

Affected versions

ghostpdl-9.*

ghostpdl-9.56.0rc1
ghostpdl-9.56.0rc1_release_tests_001
ghostpdl-9.56.0rc1_release_tests_002

Ecosystem specific

{
    "severity": "MEDIUM"
}