OSV-2024-151

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/libaom/OSV-2024-151.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2024-151
Published
2024-03-07T00:04:15.146851Z
Modified
2024-04-24T14:26:12.240231Z
Summary
Heap-buffer-overflow in od_ec_dec_normalize
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=67216

Crash type: Heap-buffer-overflow READ 1
Crash state:
od_ec_dec_normalize
av1_decode_palette_tokens
av1_visit_palette
References

Affected packages

OSS-Fuzz / libaom

Package

Name
libaom
Purl
pkg:generic/libaom

Affected ranges

Type
GIT
Repo
https://aomedia.googlesource.com/aom
Events

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

{
    "fixed_range": "9bc3992b1139371263a5a6339f1477bfdee2bf71:86ba8b684ef53a8bf11e320c2271aaa63108be36"
}