OSV-2026-21

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/ndpi/OSV-2026-21.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2026-21
Published
2026-01-09T00:20:25.200679Z
Modified
2026-01-09T00:20:25.201303Z
Summary
Use-of-uninitialized-value in processTLSBlock
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=474015854

Crash type: Use-of-uninitialized-value
Crash state:
processTLSBlock
ndpi_search_dtls
ndpi_search_tls_wrapper
References

Affected packages

OSS-Fuzz / ndpi

Package

Name
ndpi
Purl
pkg:generic/ndpi

Affected ranges

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

fixed_range
"016662b084249b52c32b181c3117f4be02d3cff0:27071bc6e7826e70e5104a9a3e1e240cbd0bbaf2"
source
"https://github.com/google/oss-fuzz-vulns/blob/main/vulns/ndpi/OSV-2026-21.yaml"