OSV-2024-434

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/cras/OSV-2024-434.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2024-434
Published
2024-05-05T00:16:24.885047Z
Modified
2024-05-05T00:16:24.885336Z
Summary
Use-of-uninitialized-value in validate_bluetooth_device_address
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=68420

Crash type: Use-of-uninitialized-value
Crash state:
validate_bluetooth_device_address
handle_on_bluetooth_device_added
fuzzer_on_bluetooth_device_added
References

Affected packages

OSS-Fuzz / cras

Package

Name
cras
Purl
pkg:generic/cras

Affected ranges

Type
GIT
Repo
https://chromium.googlesource.com/chromiumos/third_party/adhd
Events

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

{
    "introduced_range": "150f6b6d31ac0ed66a082b6c01fe4638f2794230:2f3b6ba52372fecc1d90aa3ca82b9600f723f66d"
}