{"id":"CVE-2022-2279","summary":"NULL Pointer Dereference in bfabiszewski/libmobi","details":"NULL Pointer Dereference in GitHub repository bfabiszewski/libmobi prior to 0.11.","modified":"2026-08-12T12:59:30.563180Z","published":"2022-07-01T08:15:21Z","database_specific":{"cna_assigner":"@huntrdev","cwe_ids":["CWE-476"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/2xxx/CVE-2022-2279.json"},"references":[{"type":"WEB","url":"https://huntr.dev/bounties/68c249e2-779d-4871-b7e3-851f03aca2de"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/2xxx/CVE-2022-2279.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-2279"},{"type":"FIX","url":"https://github.com/bfabiszewski/libmobi/commit/c0699c8693c47f14a2e57dec7292e862ac7adf9c"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/bfabiszewski/libmobi","events":[{"introduced":"0"},{"fixed":"864e3a86f2565b650f203ec6b1fddc4fb16df925"},{"fixed":"c0699c8693c47f14a2e57dec7292e862ac7adf9c"}],"database_specific":{"cpe":"cpe:2.3:a:libmobi_project:libmobi:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"fixed":"0.11"}],"source":["CPE_RANGE","REFERENCES"]}}],"versions":["v0.10","v0.9","v0.8","v0.7","v0.6","v0.5","v0.4","v0.3","v0.2"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-2279.json","vanir_signatures_modified":"2026-08-12T12:59:30Z","vanir_signatures":[{"deprecated":false,"digest":{"line_hashes":["31292305608889398785916044591555497413","135931664811682287503336206653104369147","3853458037460213911042760930816125690","201489084073952924389651688501567271833","87700282662609525486503623241056250212","290156986644357151070220024394152504615","220624951460948116164221208906741458022","222870291700307602092714643726765479566","219337727294669773986534443696117165114","210561703320154143057528300527952720835","273260916713371336183046544463394904766","208432732620258289950981442964836606601","117091301483348315501808979444235096754","122250575006528030553549032731869180303","179058703329741862427338357816551089411","94964951321621293890459278482317443887","146075191768579661191949398876764427777","132729837167276265958453426227096925939","39639814568214044006939896469621375932","57246905112578794818790919869297975589","80642220410755528398951230337199086238"],"threshold":0.9},"id":"CVE-2022-2279-5571eff9","signature_type":"Line","signature_version":"v1","source":"https://github.com/bfabiszewski/libmobi/commit/c0699c8693c47f14a2e57dec7292e862ac7adf9c","target":{"file":"src/opf.c"}},{"id":"CVE-2022-2279-5dfe586f","signature_type":"Line","signature_version":"v1","source":"https://github.com/bfabiszewski/libmobi/commit/c0699c8693c47f14a2e57dec7292e862ac7adf9c","target":{"file":"tools/common.c"},"deprecated":false,"digest":{"line_hashes":["79595891094494878090600442670052480194","260645486157076358791381777675181061313","84306623463075700087891781660746471016","242062193051628630451021039263137211973"],"threshold":0.9}},{"deprecated":false,"digest":{"function_hash":"108136657661089250378525685684959075869","length":4514},"id":"CVE-2022-2279-62876417","signature_type":"Function","signature_version":"v1","source":"https://github.com/bfabiszewski/libmobi/commit/c0699c8693c47f14a2e57dec7292e862ac7adf9c","target":{"file":"tools/common.c","function":"print_summary"}},{"digest":{"length":4041,"function_hash":"161543338542443378770791669907800483956"},"id":"CVE-2022-2279-80ef9a31","signature_type":"Function","signature_version":"v1","source":"https://github.com/bfabiszewski/libmobi/commit/c0699c8693c47f14a2e57dec7292e862ac7adf9c","target":{"file":"src/opf.c","function":"mobi_build_opf_metadata"},"deprecated":false}]}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H"}]}