OSV-2023-225

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/sleuthkit/OSV-2023-225.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2023-225
Published
2023-03-24T13:02:18.004510Z
Modified
2025-06-28T14:26:09.281381Z
Summary
Heap-buffer-overflow in std::__1::enable_if<true, void>::type APFSBtreeNodeIterator<APFSBtreeNode<apfs_o
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=57364

Crash type: Heap-buffer-overflow READ 2
Crash state:
std::__1::enable_if&lt;true, void>::type APFSBtreeNodeIterator&lt;APFSBtreeNode&lt;apfs_o
APFSBtreeNodeIterator&lt;APFSBtreeNode&lt;apfs_omap_key, apfs_omap_value> >::APFSBtree
APFSBtreeNodeIterator&lt;APFSBtreeNode&lt;apfs_omap_key, apfs_omap_value> > APFSBtreeN
References

Affected packages

OSS-Fuzz / sleuthkit

Package

Name
sleuthkit
Purl
pkg:generic/sleuthkit

Affected ranges

Type
GIT
Repo
https://github.com/sleuthkit/sleuthkit
Events

Affected versions

ct-3.*

ct-3.10.0
ct-3.11.0
ct-3.12.0
ct-3.13.0
ct-3.5.0
ct-3.6.0
ct-3.8.0
ct-3.9.0

sleuthkit-4.*

sleuthkit-4.12.0
sleuthkit-4.12.1
sleuthkit-4.13.0
sleuthkit-4.14.0

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

{
    "fixed_range": "5a9e83351c559744072d8e4277fe5ab270a2fbb8:37493d4561bd67aa0f4a6d182bc4c327b26cf2f9"
}