PT-2022-37312 · Skia · Skia

Published

2022-09-28

·

Updated

2022-09-28

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned in the provided description.
Description The issue is related to a heap-buffer-overflow read crash. Technical details include the crash type being a Heap-buffer-overflow READ 4, and the crash state involves functions such as SkMatrix::Persp pts and SkPath::addPath, which are part of the Skia graphics library used in various projects. The function FuzzNicePath is also mentioned, indicating the use of fuzz testing to discover the issue.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

OSV-2022-968

Affected Products

Skia