OSV-2024-517

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/libaom/OSV-2024-517.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2024-517
Published
2024-05-30T00:05:57.060200Z
Modified
2024-07-16T14:24:59.011170Z
Summary
Segv on unknown address in od_ec_dec_init
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=68774

Crash type: Segv on unknown address
Crash state:
od_ec_dec_init
aom_reader_init
av1_decode_tg_tiles_and_wrapup
References

Affected packages

OSS-Fuzz / libaom

Package

Name
libaom
Purl
pkg:generic/libaom

Affected ranges

Type
GIT
Repo
https://aomedia.googlesource.com/aom
Events

Affected versions

v3.*

v3.8.2
v3.8.2-rc1
v3.9.0
v3.9.0-rc1
v3.9.1
v3.9.1-rc1
v3.9.1-rc2

Ecosystem specific

{
    "severity": null
}

Database specific

{
    "introduced_range": "0414f4e9abe9e859a1a26c92e9c79af2da63bb0b:cae8fbe572bec3443b89d9be858ff0abb7020f1b",
    "fixed_range": "bdada5c710f882be00ad397da17733eeb4e81918:4e1a5d4d08a216d71ecee10c25736abb2ffc2cdc"
}