Change theme
Help
Press space for more information.
Show links for this issue (Shortcut: i, l)
Copy issue ID
Previous Issue (Shortcut: k)
Next Issue (Shortcut: j)
Sign in to use full features.
Vote: I am impacted
Notification menu
Refresh (Shortcut: Shift+r)
Go home (Shortcut: u)
Pending code changes (auto-populated)
View issue level access limits(Press Alt + Right arrow for more information)
A security concern
View staffing
Description
Project: libvips
Fuzzing Engine: libFuzzer
Fuzz Target: heifsave_buffer_fuzzer
Job Type: libfuzzer_asan_libvips
Platform Id: linux
Crash Type: Heap-buffer-overflow WRITE {*}
Crash Address: 0x52900000ed0f
Crash State:
vips_foreign_save_heif_write_block
wbuffer_write_thread
vips_threadset_work
Sanitizer: address (ASAN)
Recommended Security Severity: High
Regressed:
Reproducer Testcase:
Issue filed automatically.
See
When you fix this bug, please
* mention the fix revision(s).
* state whether the bug was a short-lived regression or an old bug in any stable releases.
* add any other useful information.
This information can help downstream consumers.
If you need to contact the OSS-Fuzz team with a question, concern, or any other feedback, please file an issue at
This bug is subject to a 90 day disclosure deadline. If 90 days elapse
without an upstream patch, then the bug report will automatically
become visible to the public.