OSV-2025-467

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/maven-model/OSV-2025-467.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2025-467
Withdrawn
2025-06-18T07:29:10.570659Z
Published
2025-06-16T00:02:48.769670Z
Modified
2025-06-16T00:02:48.770129Z
Summary
Security exception in java.base/java.lang.StringUTF16.newBytesFor
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=424839378

Crash type: Security exception
Crash state:
java.base/java.lang.StringUTF16.newBytesFor
java.base/java.lang.AbstractStringBuilder.inflate
java.base/java.lang.AbstractStringBuilder.append
References

Affected packages

OSS-Fuzz / maven-model

Package

Name
maven-model
Purl
pkg:generic/maven-model

Affected ranges

Type
GIT
Repo
https://github.com/apache/maven
Events

Affected versions

maven-4.*
maven-4.0.0-alpha-13
maven-4.0.0-beta-2
maven-4.0.0-beta-3
maven-4.0.0-beta-4
maven-4.0.0-beta-5
maven-4.0.0-rc-1
maven-4.0.0-rc-2
maven-4.0.0-rc-3
maven-4.0.0-rc-4

Ecosystem specific

{
    "severity": "LOW"
}

Database specific

source
"https://github.com/google/oss-fuzz-vulns/blob/main/vulns/maven-model/OSV-2025-467.yaml"
introduced_range
"a3e8da805c7e8d743700f13924bd2aafe3fe6783:5029cc238ce5ce03b0fb431a278889f8b788c0a7"