OSV-2023-451

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/wolfssl/OSV-2023-451.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2023-451
Published
2023-06-02T14:02:19.303950Z
Modified
2023-06-22T14:25:02.611556Z
Summary
Heap-buffer-overflow in BundlePacket
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=59498

Crash type: Heap-buffer-overflow WRITE 9
Crash state:
BundlePacket
SendChannelExit
wolfSSH_shutdown
References

Affected packages

OSS-Fuzz / wolfssl

Package

Name
wolfssl
Purl
pkg:generic/wolfssl

Affected ranges

Type
GIT
Repo
https://github.com/wolfssl/wolfssl
Events

Affected versions

v5.*

v5.6.0-stable
v5.6.2-stable

Ecosystem specific

{
    "severity": "HIGH"
}

Database specific

{
    "introduced_range": "69ceedbcff5a2ae0dab8fd6c8199c12ec7b45b79:b2a6203ec01fcc5d55ab37b3d0e85ab160e962d4"
}