OSV-2024-1326

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/ndpi/OSV-2024-1326.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2024-1326
Published
2024-11-18T00:12:17.790747Z
Modified
2024-11-18T00:12:17.791146Z
Summary
Heap-buffer-overflow in ndpi_search_mikrotik
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=379180960

Crash type: Heap-buffer-overflow READ 16
Crash state:
ndpi_search_mikrotik
check_ndpi_detection_func
ndpi_detection_process_packet
References

Affected packages

OSS-Fuzz / ndpi

Package

Name
ndpi
Purl
pkg:generic/ndpi

Affected ranges

Type
GIT
Repo
https://github.com/ntop/nDPI.git
Events

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

{
    "introduced_range": "59ee1fe1156be234fed796972a29a31a0589e25a:3ce8d0e5087f6e3f2a3e1f65d39d78c228054a5d",
    "fixed_range": "4fd12278b111eeaf1068876f77fb0a6176f69a34:35f37c38d983108b55f38f62b7b58582c1909c39"
}