OSV-2023-165

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/croaring/OSV-2023-165.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2023-165
Published
2023-03-12T13:00:29.802108Z
Modified
2023-03-16T14:24:12.891209Z
Summary
Heap-buffer-overflow in array_container_to_uint32_array
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=56893

Crash type: Heap-buffer-overflow WRITE 4
Crash state:
array_container_to_uint32_array
ra_to_uint32_array
roaring_bitmap_serialize
References

Affected packages

OSS-Fuzz / croaring

Package

Name
croaring
Purl
pkg:generic/croaring

Affected ranges

Type
GIT
Repo
https://github.com/RoaringBitmap/CRoaring
Events

Ecosystem specific

{
    "severity": "HIGH"
}

Database specific

{
    "fixed_range": "95de500c8dcbf2ba01c2677fe9097ce7db2f4f70:2411b3be4ddf5cd982c8acadf56be109ba9d7b2c"
}