{"id":"OSV-2022-999","summary":"Heap-buffer-overflow in std::__1::basic_string\u003cchar, std::__1::char_traits\u003cchar\u003e, std::__1::allocator\u003cch","details":"OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=51972\n\n```\nCrash type: Heap-buffer-overflow READ {*}\nCrash state:\nstd::__1::basic_string\u003cchar, std::__1::char_traits\u003cchar\u003e, std::__1::allocator\u003cch\nExiv2::QuickTimeVideo::userDataDecoder\nExiv2::QuickTimeVideo::tagDecoder\n```\n","modified":"2022-09-30T00:00:30.047752Z","published":"2022-09-30T00:00:30.047511Z","references":[{"type":"REPORT","url":"https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=51972"}],"affected":[{"package":{"name":"exiv2","ecosystem":"OSS-Fuzz","purl":"pkg:generic/exiv2"},"ranges":[{"type":"GIT","repo":"https://github.com/Exiv2/exiv2","events":[{"introduced":"0a948c6a7d7538e27feef17816406cc5d7769a78"},{"fixed":"0db460c9b0aad040ea1ab0335c3f07d18a0bc4cf"}]}],"ecosystem_specific":{"severity":"MEDIUM"},"database_specific":{"source":"https://github.com/google/oss-fuzz-vulns/blob/main/vulns/exiv2/OSV-2022-999.yaml"}}],"schema_version":"1.7.3"}