Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Threats Tagged 'oss-fuzz'

View all threats tagged with 'oss-fuzz'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: oss-fuzz

Threats Tagged 'oss-fuzz'

Click on any threat for detailed analysis and mitigation recommendations

OSV-2022-1134: Heap-buffer-overflow in ndlz8_decompress
0

A heap-buffer-overflow vulnerability exists in the ndlz8_decompress function of the c-blosc2 library, as reported by OSS-Fuzz. This issue causes a read overflow on the heap, potentially leading to crashes or undefined behavior during decompression operations. The vulnerability affects many specific versions of c-blosc2 from 2.0.0 through 3.1.5.

Join the discussion
OSV-2021-1672: Heap-buffer-overflow in blosc_d
0

A heap-buffer-overflow vulnerability exists in the blosc_d function of the c-blosc2 library, as reported by OSS-Fuzz. The issue involves a read overflow of 4 bytes on the heap during decompression operations. This affects multiple exact versions of c-blosc2 from 2.0.0 through 3.1.5. No official patch or remediation details are provided in the available data.

Join the discussion
OSV-2022-1259: Heap-buffer-overflow in dwg_decode_INSERT_private
0

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=54228 ``` Crash type: Heap-buffer-overflow READ 1 Crash state: dwg_decode_INSERT_private dwg_decode_INSERT dwg_decode_add_object ```

Join the discussion
OSV-2022-1198: Heap-buffer-overflow in dwg_json_LTYPE
0

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=53617 ``` Crash type: Heap-buffer-overflow READ 8 Crash state: dwg_json_LTYPE json_objects_write dwg_write_json ```

Join the discussion
OSV-2022-388: Segv on unknown address in dwg_ref_get_object
0

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=47151 ``` Crash type: Segv on unknown address Crash state: dwg_ref_get_object dwg_geojson_feature dwg_geojson_object ```

Join the discussion
OSV-2022-372: Heap-buffer-overflow in dwg_encode_VERTEX_2D
0

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=46994 ``` Crash type: Heap-buffer-overflow READ 8 Crash state: dwg_encode_VERTEX_2D dwg_encode_add_object dwg_encode ```

Join the discussion
OSV-2022-400: Heap-double-free in dwg_free_XRECORD_private
0

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=47300 ``` Crash type: Heap-double-free Crash state: dwg_free_XRECORD_private dwg_free_XRECORD dwg_free_object ```

Join the discussion
OSV-2023-1350: Heap-buffer-overflow in inflate
0

A heap-buffer-overflow vulnerability exists in the inflate function used by the c-blosc2 library. This issue was identified through OSS-Fuzz and involves a read overflow on the heap during decompression operations. Multiple specific versions of c-blosc2 are affected. No CVSS score is provided, and no known exploits are reported in the wild.

Join the discussion
OSV-2023-1129: UNKNOWN READ in HeifPixelImage::overlay
0

A vulnerability identified as OSV-2023-1129 affects the libheif library, involving an UNKNOWN READ error in the HeifPixelImage::overlay function. The issue was reported by OSS-Fuzz and results in a crash during image decoding operations. Multiple specific versions of libheif from 1.16.2 through 1.23.1 are affected. No patch or fix information is currently provided, and there are no known exploits in the wild.

Join the discussion
OSV-2022-653: Heap-double-free in dwg_free_common_entity_data
0

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=49602 ``` Crash type: Heap-double-free Crash state: dwg_free_common_entity_data dwg_free_DIMENSION_ANG2LN dwg_free_object ```

Join the discussion

Showing 1 to 10 of 15 results

Filters:Tag: oss-fuzz
Page 1 of 2
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses