OSV-2022-714

Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/libredwg/OSV-2022-714.yaml
Published
2022-08-15T00:00:47.794062Z
Modified
2022-11-26T00:15:15.469367Z
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=50194

Crash type: Heap-buffer-overflow WRITE 16
Crash state:
dynapi_set_helper
dwg_dynapi_header_set_value
json_HEADER
References

Affected packages

OSS-Fuzz / libredwg

libredwg

Affected ranges

Affected versions

0.*

0.12.4.4635
0.12.4.4637
0.12.4.4641
0.12.4.4643
0.12.4.4647
0.12.4.4652
0.12.4.4654
0.12.4.4658
0.12.4.4660

Ecosystem specific

{
    "severity": "HIGH"
}