OSV-2023-1263

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/quickjs/OSV-2023-1263.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2023-1263
Published
2023-12-07T00:05:27.754264Z
Modified
2023-12-07T00:05:27.754792Z
Summary
Heap-buffer-overflow in js_is_live_code
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=64726

Crash type: Heap-buffer-overflow READ 1
Crash state:
js_is_live_code
js_parse_statement_or_decl
js_parse_block
References

Affected packages

OSS-Fuzz / quickjs

Package

Name
quickjs
Purl
pkg:generic/quickjs

Affected ranges

Type
GIT
Repo
https://github.com/bellard/quickjs
Events

Ecosystem specific

{
    "severity": "MEDIUM"
}