{"id":"OSV-2024-1312","summary":"Heap-buffer-overflow in jv_string_vfmt","details":"OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=378836890\n\n```\nCrash type: Heap-buffer-overflow READ 13\nCrash state:\njv_string_vfmt\njv_string_fmt\njv_parse_sized_custom_flags\n```\n","modified":"2025-03-05T14:20:12.622041Z","published":"2024-11-15T00:16:08.928897Z","references":[{"type":"REPORT","url":"https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=378836890"}],"affected":[{"package":{"name":"jq","ecosystem":"OSS-Fuzz","purl":"pkg:generic/jq"},"ranges":[{"type":"GIT","repo":"https://github.com/jqlang/jq","events":[{"introduced":"13353515bd3aedf84c6e6ebfb726563ae84db778"},{"fixed":"9d6efec1987b544ac2f8030e3c22036f7cb70cd9"}]}],"versions":["jq-1.7.1"],"ecosystem_specific":{"severity":"MEDIUM"},"database_specific":{"source":"https://github.com/google/oss-fuzz-vulns/blob/main/vulns/jq/OSV-2024-1312.yaml","fixed_range":"8ba03f788f28cadeab7de7111d13add88b400d0b:9d6efec1987b544ac2f8030e3c22036f7cb70cd9","introduced_range":"98a206964d59143c6ed9189b91cdb34af1ae5071:bfb7fd570f521ef832fe1c3bca0e05abd398284c"}}],"schema_version":"1.7.3"}