Skip to main content

Threats Tagged 'oss-fuzz'

View all threats tagged with 'oss-fuzz'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: oss-fuzz

Threats Tagged 'oss-fuzz'

Click on any threat for detailed analysis and mitigation recommendations

A vulnerability in Fluent Bit causes an UNKNOWN READ crash in the renumber_by_map function. This issue was identified by OSS-Fuzz and affects multiple specific versions of Fluent Bit. A patch is available to address this vulnerability.

Join the discussion

A global buffer overflow vulnerability exists in the mod-auth-openidc module within the function oidc_cfg_redirect_urls_allowed_get, as reported by OSS-Fuzz. This vulnerability involves an out-of-bounds read of 8 bytes. A patch is available to address this issue.

Join the discussion

A vulnerability was identified in the zxc library related to a memcpy parameter overlap in the function zxc_decompress_chunk_wrapper_default, as reported by OSS-Fuzz. This issue causes a crash during decompression operations. A patch is available to address this flaw.

Join the discussion

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=528859714 ``` Crash type: Heap-double-free Crash state: dxf_entities_read dwg_read_dxf llvmfuzz.c ```

Join the discussion

An index-out-of-bounds vulnerability was reported in the print_insn_tic6x function of the binutils project. The issue was identified by OSS-Fuzz and involves a crash due to accessing memory outside the intended bounds during disassembly operations. No specific affected versions or patch information is provided.

Join the discussion

A heap-buffer-overflow vulnerability has been identified in the binutils project, specifically in the function bfd_getl16. The issue was reported by OSS-Fuzz and involves a read overflow on the heap. No affected versions or patch information are provided in the available data.

Join the discussion

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=524393006 ``` Crash type: Stack-use-after-scope READ 8 Crash state: StreamReader_CApi::wait_for_file_size Box_iloc::read_data HeifFile::append_data_from_iloc ```

Join the discussion

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=507646002 ``` Crash type: Heap-buffer-overflow WRITE 8 Crash state: lj_record_idx lj_record_ins trace_state ```

Join the discussion

A vulnerability in the Poppler PDF rendering library involves an UNKNOWN READ error in the XRef::parseEntry function, as reported by OSS-Fuzz. The issue occurs during parsing of PDF cross-reference entries, potentially leading to a crash. No specific affected versions or patches are currently identified. There is no evidence of exploitation in the wild. The vulnerability's impact and exploitability remain unclear due to limited technical details.

Join the discussion

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=501676165 ``` Crash type: Heap-buffer-overflow READ 1 Crash state: ultrahdr::IccHelper::readIccColorGamut ultrahdr::JpegR::decodeJPEGR uhdr_decode ```

Join the discussion

Showing 1 to 10 of 88 results

Filters:Tag: oss-fuzz
Page 1 of 9
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses