OSV-2025-469

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/ndpi/OSV-2025-469.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2025-469
Published
2025-06-16T00:17:21.776120Z
Modified
2025-06-16T00:17:21.776520Z
Summary
Use-of-uninitialized-value in ndpi_strdup
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=424653416

Crash type: Use-of-uninitialized-value
Crash state:
ndpi_strdup
ndpi_detection_process_packet
fuzz_config.cpp
References

Affected packages

OSS-Fuzz / ndpi

Package

Name
ndpi
Purl
pkg:generic/ndpi

Affected ranges

Type
GIT
Repo
https://github.com/ntop/nDPI.git
Events

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

{
    "fixed_range": "6cbc8d1471be221766fac49ed73f5b0e837917be:86c591af6abb92448863d03d659aa430beb8f61d",
    "introduced_range": "c4dabafb0e3fa19fe1d02158da4006a6f9ba901d:80cfd5b2f6cb79530048f69fcf60d83f51ccab97"
}