Description
An integer overflow exists in Mapbox's closed source gl-native library prior to version 10.6.1, which is bundled with multiple Mapbox products including open source libraries. The overflow is caused by large image height and width values when creating a new Image and allows for out of bounds writes, potentially crashing the Mapbox process.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-6476 | An integer overflow exists in Mapbox's closed source gl-native library prior to version 10.6.1, which is bundled with multiple Mapbox products including open source libraries. The overflow is caused by large image height and width values when creating a new Image and allows for out of bounds writes, potentially crashing the Mapbox process. |
Github GHSA |
GHSA-4696-g7jj-xg2h | Mapbox is vulnerable to Integer Overflow |
References
History
No history.
Status: PUBLISHED
Assigner: facebook
Published:
Updated: 2024-08-03T10:45:53.054Z
Reserved: 2022-08-12T00:00:00.000Z
Link: CVE-2022-38216
No data.
Status : Modified
Published: 2022-08-16T01:15:14.360
Modified: 2024-11-21T07:16:04.593
Link: CVE-2022-38216
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA