OSV-2024-550

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/miniz/OSV-2024-550.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2024-550
Published
2024-06-12T00:06:02.418206Z
Modified
2024-06-12T00:06:02.418563Z
Summary
Heap-buffer-overflow in mz_zip_mem_read_func
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=69528

Crash type: Heap-buffer-overflow READ {*}
Crash state:
mz_zip_mem_read_func
mz_zip_reader_read_central_dir
mz_zip_reader_init_mem
References

Affected packages

OSS-Fuzz / miniz

Package

Name
miniz
Purl
pkg:generic/miniz

Affected ranges

Type
GIT
Repo
https://github.com/richgel999/miniz.git
Events

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

{
    "introduced_range": "8714fd3cd8788eb18304200607247926f9728d1f:3c46a051414a4221247f85e16712d123d0ad4983",
    "fixed_range": "3c46a051414a4221247f85e16712d123d0ad4983:8573fd7cd6f49b262a0ccc447f3c6acfc415e556"
}