OSV-2022-904

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/geos/OSV-2022-904.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2022-904
Published
2022-09-17T00:02:05.375997Z
Modified
2023-07-11T14:17:31.116763Z
Summary
Heap-use-after-free in std::__1::pair<std::__1::__tree_iterator<std::__1::__value_type<geos::geom::Coor
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=51406

Crash type: Heap-use-after-free READ 8
Crash state:
std::__1::pair&lt;std::__1::__tree_iterator&lt;std::__1::__value_type&lt;geos::geom::Coor
geos::geomgraph::NodeMap::addNode
geos::geomgraph::GeometryGraph::addSelfIntersectionNode
References

Affected packages

OSS-Fuzz / geos

Package

Name
geos
Purl
pkg:generic/geos

Affected ranges

Type
GIT
Repo
https://git.osgeo.org/gitea/geos/geos.git
Events
Introduced
bd3146275054c8689d1cbada47bfe51ebed898dd
Fixed
6bc91ff0f985abb96e44f1c8ef9cf010d9d2006c
Fixed
e93854317dd3130644891c73579e773859a12717

Affected versions

3.*

3.12.0
3.12.0beta1
3.12.0beta2

Ecosystem specific

{
    "severity": "HIGH"
}