OSV-2022-343

Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/fastjson2/OSV-2022-343.yaml
Published
2022-04-15T00:01:30.888554Z
Modified
2022-08-03T00:19:59.503915Z
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=46696

Crash type: Uncaught exception
Crash state:
com.alibaba.fastjson.JSONPath.getPropertyValue
java.base/jdk.internal.math.FDBigInteger.multByPow52
java.base/jdk.internal.math.FloatingDecimal$ASCIIToBinaryBuffer.floatValue
References

Affected packages

OSS-Fuzz / fastjson2

fastjson2

Affected versions

1.*

1.2.80

Ecosystem specific

{
    "severity": "LOW"
}

Database specific

{
    "introduced_range": "6460f65759694488446a51e79f74c742290fc13e:e14b1e4a2c8d55ccc6b7d3c57dd172b4176988d2"
}