OSV-2023-1352

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/ntopng/OSV-2023-1352.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2023-1352
Published
2023-12-24T00:05:23.975196Z
Modified
2023-12-24T00:05:23.975551Z
Summary
Heap-buffer-overflow in Flow::dissectMDNS
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=65271

Crash type: Heap-buffer-overflow READ {*}
Crash state:
Flow::dissectMDNS
NetworkInterface::processPacket
NetworkInterface::dissectPacket
References

Affected packages

OSS-Fuzz / ntopng

Package

Name
ntopng
Purl
pkg:generic/ntopng

Affected ranges

Type
GIT
Repo
https://github.com/ntop/ntopng.git
Events

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

{
    "fixed_range": "98c8b49d9731e3cb015fd0cc84e9a4d60d0f6193:6a91951fd6056db92bf661fdca4c9b4b439a8992"
}