OSV-2022-867

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/wireshark/OSV-2022-867.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2022-867
Published
2022-09-09T00:01:54.157712Z
Modified
2024-11-21T15:03:48.620142Z
Summary
Heap-buffer-overflow in get_utf_8_string
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=51090

Crash type: Heap-buffer-overflow READ 1
Crash state:
get_utf_8_string
dissect_form_urlencoded
call_dissector_work
References

Affected packages

OSS-Fuzz / wireshark

Package

Name
wireshark
Purl
pkg:generic/wireshark

Affected ranges

Type
GIT
Repo
https://gitlab.com/wireshark/wireshark.git
Events

Affected versions

v4.*

v4.1.0
v4.1.1rc0
v4.2.0
v4.2.0rc0
v4.2.0rc1
v4.2.0rc2
v4.2.0rc3
v4.2.1
v4.2.10rc0
v4.2.1rc0
v4.2.2
v4.2.2rc0
v4.2.3
v4.2.3rc0
v4.2.4
v4.2.4rc0
v4.2.5
v4.2.5rc0
v4.2.6
v4.2.6rc0
v4.2.7
v4.2.7rc0
v4.2.8
v4.2.8rc0
v4.2.9
v4.2.9rc0
v4.3.0
v4.3.0rc0
v4.3.0rc1
v4.3.1
v4.3.1rc0
v4.3.2rc0
v4.4.0
v4.4.0rc0
v4.4.0rc1
v4.4.1
v4.4.1rc0
v4.4.2
v4.4.2rc0
v4.4.3rc0
v4.5.0rc0

wireshark-4.*

wireshark-4.2.0
wireshark-4.2.0rc2
wireshark-4.2.1
wireshark-4.2.2
wireshark-4.2.3
wireshark-4.2.4
wireshark-4.2.5
wireshark-4.2.6
wireshark-4.2.7
wireshark-4.2.8
wireshark-4.2.9
wireshark-4.4.0
wireshark-4.4.1
wireshark-4.4.2

Ecosystem specific

{
    "severity": "MEDIUM"
}