{"id":"CVE-2022-34970","details":"Crow before 1.0+4 has a heap-based buffer overflow via the function qs_parse in query_string.h. On successful exploitation this vulnerability allows attackers to remotely execute arbitrary code in the context of the vulnerable service.","modified":"2026-04-12T02:57:04.311445Z","published":"2022-08-04T19:15:09.827Z","references":[{"type":"ADVISORY","url":"https://cwe.mitre.org/data/definitions/193.html"},{"type":"ADVISORY","url":"https://github.com/CrowCpp/Crow/releases/tag/v1.0%2B4"},{"type":"FIX","url":"https://github.com/CrowCpp/Crow/pull/486"},{"type":"EVIDENCE","url":"https://github.com/0xhebi/CVE-2022-34970/blob/master/report.md"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/crowcpp/crow","events":[{"introduced":"0"},{"fixed":"62dae4cc32229e372bb81c0a20c19f2727345e71"}],"database_specific":{"versions":[{"introduced":"0"},{"fixed":"1.0\\+4"}]}}],"versions":["0.2","v0.1","v0.3","v1.0","v1.0+1","v1.0+2","v1.0+3"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-34970.json","vanir_signatures_modified":"2026-04-12T02:57:04Z","vanir_signatures":[{"signature_type":"Function","id":"CVE-2022-34970-6073f16d","digest":{"length":657,"function_hash":"336938383434325191902643563944787926562"},"target":{"file":"include/crow/query_string.h","function":"qs_parse"},"deprecated":false,"source":"https://github.com/crowcpp/crow/commit/62dae4cc32229e372bb81c0a20c19f2727345e71","signature_version":"v1"},{"signature_type":"Line","id":"CVE-2022-34970-cfd24717","digest":{"threshold":0.9,"line_hashes":["181069325050730614390994020731278716795","102873384906716306407912897727626310214","88213764132756482993718457627673947381","156651280475791468279827093503004407029","169940499544219386184258702819157697858","159203152154726909533663750365906025093","275499987689425730698452471984301144009","278970894955859571642790026944179829431"]},"target":{"file":"include/crow/query_string.h"},"deprecated":false,"source":"https://github.com/crowcpp/crow/commit/62dae4cc32229e372bb81c0a20c19f2727345e71","signature_version":"v1"}]}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}