{"id":"CVE-2022-29368","details":"Moddable commit before 135aa9a4a6a9b49b60aa730ebc3bcc6247d75c45 was discovered to contain an out-of-bounds read via the function fxUint8Getter at /moddable/xs/sources/xsDataView.c.","modified":"2026-08-12T13:00:43.464098Z","published":"2022-05-12T18:48:42Z","database_specific":{"cna_assigner":"mitre","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/29xxx/CVE-2022-29368.json","unresolved_ranges":[{"extracted_events":[{"fixed":"135aa9a4a6a9b49b60aa730ebc3bcc6247d75c45"}],"source":"DESCRIPTION"}]},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/29xxx/CVE-2022-29368.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-29368"},{"type":"REPORT","url":"https://github.com/Moddable-OpenSource/moddable/issues/896"},{"type":"FIX","url":"https://github.com/Moddable-OpenSource/moddable/commit/135aa9a4a6a9b49b60aa730ebc3bcc6247d75c45"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/moddable-opensource/moddable","events":[{"introduced":"0"},{"fixed":"135aa9a4a6a9b49b60aa730ebc3bcc6247d75c45"}],"database_specific":{"cpe":"cpe:2.3:a:moddable:moddable:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"last_affected":"os220330"}],"source":["CPE_RANGE","REFERENCES"]}}],"versions":["OS220330","OS210203","OS210119","OS201230b","OS201230","OS201216","OS201127","OS201116","OS201030","OS201020","OS201014","OS201012","OS201006","OS201005b","OS200930","OS200925","OS200915","OS200910","OS200908","OS200903","OS200831"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-29368.json","vanir_signatures_modified":"2026-08-12T13:00:43Z","vanir_signatures":[{"deprecated":false,"digest":{"function_hash":"213971792071456128984423775624988611005","length":3686},"id":"CVE-2022-29368-2cd55a00","signature_type":"Function","signature_version":"v1","source":"https://github.com/moddable-opensource/moddable/commit/135aa9a4a6a9b49b60aa730ebc3bcc6247d75c45","target":{"file":"xs/sources/xsDataView.c","function":"fx_TypedArray"}},{"deprecated":false,"digest":{"function_hash":"84363846679159954041724313900895170132","length":1607},"id":"CVE-2022-29368-95e0121f","signature_type":"Function","signature_version":"v1","source":"https://github.com/moddable-opensource/moddable/commit/135aa9a4a6a9b49b60aa730ebc3bcc6247d75c45","target":{"file":"xs/sources/xsDataView.c","function":"fx_DataView"}},{"source":"https://github.com/moddable-opensource/moddable/commit/135aa9a4a6a9b49b60aa730ebc3bcc6247d75c45","target":{"file":"xs/sources/xsDataView.c"},"deprecated":false,"digest":{"line_hashes":["223017875970014378970557662022359767270","301449129650224366595680306941606104538","11627542960588721820961681073419472508","290358849966743487640354381257567087823","198460982742232140880275915543621394889","118014687436350088933251035253252893264","101378216909691541207872093771532453371","239731733297856822896028533177456612852","123057360384932954171782538858718115801","71783824872907523946784047227229151330","192572467819460407391453556487659234782","271459887274075396375660736593274662724","290358849966743487640354381257567087823","44994276969962025091713365649871040777"],"threshold":0.9},"id":"CVE-2022-29368-9a1ed55f","signature_type":"Line","signature_version":"v1"}]}}],"schema_version":"1.9.0"}