OSV-2025-449

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/ndpi/OSV-2025-449.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2025-449
Published
2025-06-10T00:16:50.624468Z
Modified
2025-06-10T00:16:50.624907Z
Summary
Heap-buffer-overflow in check_content_type_and_change_protocol
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=422832557

Crash type: Heap-buffer-overflow READ 11
Crash state:
check_content_type_and_change_protocol
process_request
ndpi_check_http_tcp
References

Affected packages

OSS-Fuzz / ndpi

Package

Name
ndpi
Purl
pkg:generic/ndpi

Affected ranges

Type
GIT
Repo
https://github.com/ntop/nDPI.git
Events

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

{
    "introduced_range": "a4459c817b6fca8c3197c2e852b6e33668fbb9ff:a9433488cd090a5da68179b52bb8c200d42649fa",
    "fixed_range": "a9433488cd090a5da68179b52bb8c200d42649fa:75395cb264f9bfd38d27ac0ba506acc9eab22e34"
}