OSV-2024-272

Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/cyclonedds/OSV-2024-272.yaml
Published
2024-04-18T00:05:58.463730Z
Modified
2024-04-18T00:05:58.464184Z
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=68028

Crash type: Heap-buffer-overflow READ 2
Crash state:
DDS_Security_Deserialize_ParticipantBuiltinTopicData
fuzz_security_deser.c
References

Affected packages

OSS-Fuzz / cyclonedds

Package

Name
cyclonedds

Affected ranges

Type
GIT
Repo
https://github.com/eclipse-cyclonedds/cyclonedds
Events

Ecosystem specific

{
    "severity": "HIGH"
}

Database specific

{
    "fixed_range": "31a4843667830be87a38bd8bb22268061f79b42b:2ad37f4cc3d545149f680d6a8b0ff31e0ea84edc"
}