OSV-2024-3

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/icu/OSV-2024-3.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2024-3
Published
2024-01-04T00:03:08.480968Z
Modified
2024-04-17T16:20:49.591813Z
Summary
Stack-buffer-overflow in icu_75::TZDBTimeZoneNames::getMetaZoneNames
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=65486

Crash type: Stack-buffer-overflow WRITE 1
Crash state:
icu_75::TZDBTimeZoneNames::getMetaZoneNames
icu_75::TZDBTimeZoneNames::getMetaZoneDisplayName
TestNames
References

Affected packages

OSS-Fuzz / icu

Package

Name
icu
Purl
pkg:generic/icu

Affected ranges

Type
GIT
Repo
https://github.com/unicode-org/icu.git
Events

Ecosystem specific

{
    "severity": "HIGH"
}

Database specific

{
    "fixed_range": "4ba5d9191bc20e33773ee1ff0b7a96b2b2de8359:539e8f41a35fec30fba4cfb3a65ea4db67978f85"
}