OSV-2022-349

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/quickjs/OSV-2022-349.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2022-349
Published
2022-04-16T00:00:12.324830Z
Modified
2022-04-16T00:00:12.325106Z
Summary
Heap-buffer-overflow in JS_CallInternal
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=46701

Crash type: Heap-buffer-overflow READ 1
Crash state:
JS_CallInternal
JS_EvalFunctionInternal
__JS_EvalInternal
References

Affected packages

OSS-Fuzz / quickjs

Package

Name
quickjs
Purl
pkg:generic/quickjs

Affected ranges

Type
GIT
Repo
https://github.com/bellard/quickjs
Events

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

{
    "fixed_range": "55a4878a605a6707b1754b4b807deec62c8fc895:daa35bc1e5d43192098af9b51caeb4f18f73f9f9"
}