{"id":"OSV-2025-6","summary":"Heap-buffer-overflow in next_marker","details":"OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=387317434\n\n```\nCrash type: Heap-buffer-overflow READ 1\nCrash state:\nnext_marker\nread_markers\nconsume_markers\n```\n","modified":"2025-01-06T00:16:10.037219Z","published":"2025-01-06T00:16:10.036783Z","references":[{"type":"REPORT","url":"https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=387317434"}],"affected":[{"package":{"name":"libvips","ecosystem":"OSS-Fuzz","purl":"pkg:generic/libvips"},"ranges":[{"type":"GIT","repo":"https://github.com/libvips/libvips.git","events":[{"introduced":"7b47b07bcd0583c4f9d4afaac85d3abb5008edff"},{"fixed":"4689cda680c2b59bf8dca0b856fb58087196f60a"}]}],"ecosystem_specific":{"severity":"MEDIUM"},"database_specific":{"fixed_range":"7b47b07bcd0583c4f9d4afaac85d3abb5008edff:4689cda680c2b59bf8dca0b856fb58087196f60a","source":"https://github.com/google/oss-fuzz-vulns/blob/main/vulns/libvips/OSV-2025-6.yaml"}}],"schema_version":"1.7.3"}