OSV-2024-1159

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/libjpeg-turbo/OSV-2024-1159.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2024-1159
Published
2024-09-30T00:15:17.123309Z
Modified
2024-09-30T00:15:17.123644Z
Summary
Use-of-uninitialized-value in decompress_yuv.cc
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=369974248

Crash type: Use-of-uninitialized-value
Crash state:
decompress_yuv.cc
References

Affected packages

OSS-Fuzz / libjpeg-turbo

Package

Name
libjpeg-turbo
Purl
pkg:generic/libjpeg-turbo

Affected ranges

Type
GIT
Repo
https://github.com/libjpeg-turbo/libjpeg-turbo
Events

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

source
"https://github.com/google/oss-fuzz-vulns/blob/main/vulns/libjpeg-turbo/OSV-2024-1159.yaml"
introduced_range
"efff48f7cfb7a2cd65526fa60e59e45c469764e7:2f50d87506df485a7bca8c99119c9867bccd40c3"