OpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to information leakage upon certain error conditions because uninitialized RPC output variables are sent over the network to a peer.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-18603.json"
[
{
"source": "https://github.com/pnggroup/libpng/commit/b50d5cea2b9ebc10d6c329b15d4cf7c5d8a209f4",
"signature_type": "Line",
"digest": {
"line_hashes": [
"335009445853161725509078688642847050874"
],
"threshold": 0.9
},
"deprecated": false,
"target": {
"file": "scripts/def.c"
},
"id": "CVE-2019-18603-237c08f7",
"signature_version": "v1"
},
{
"source": "https://github.com/pnggroup/libpng/commit/b50d5cea2b9ebc10d6c329b15d4cf7c5d8a209f4",
"signature_type": "Function",
"digest": {
"function_hash": "156847833382120903515923944153085448340",
"length": 699.0
},
"deprecated": false,
"target": {
"file": "png.c",
"function": "png_get_copyright"
},
"id": "CVE-2019-18603-49cd500e",
"signature_version": "v1"
},
{
"source": "https://github.com/pnggroup/libpng/commit/b50d5cea2b9ebc10d6c329b15d4cf7c5d8a209f4",
"signature_type": "Line",
"digest": {
"line_hashes": [
"166375070723291529406421301066248769034",
"275647010778297936193963675511576832388",
"256826767335212246520616614652191899280",
"279336807821086835335477021495116274772",
"12143558197167857611521573423263978967",
"203670665548617710253344796317957509274",
"85981594227436863750959449957370155654",
"85211577648700079408604121152824088563"
],
"threshold": 0.9
},
"deprecated": false,
"target": {
"file": "png.h"
},
"id": "CVE-2019-18603-7efb9cc8",
"signature_version": "v1"
},
{
"source": "https://github.com/pnggroup/libpng/commit/b50d5cea2b9ebc10d6c329b15d4cf7c5d8a209f4",
"signature_type": "Line",
"digest": {
"line_hashes": [
"103641275533327891742404614660718038032",
"285817988680497909817096525928942016543"
],
"threshold": 0.9
},
"deprecated": false,
"target": {
"file": "pngtest.c"
},
"id": "CVE-2019-18603-abe0ce2a",
"signature_version": "v1"
},
{
"source": "https://github.com/pnggroup/libpng/commit/b50d5cea2b9ebc10d6c329b15d4cf7c5d8a209f4",
"signature_type": "Line",
"digest": {
"line_hashes": [
"27902707175035437190228177707208940742",
"151538675884453000635853099389732394265",
"110185300238033616099024488297784183084",
"218758843931783591782691572100042594627",
"138002014430707848760140631815527258461",
"84643086558378961648141601569593941079",
"5811309190663358977262816741517617962",
"49707240273346183902828160227258670924",
"136955984917707785624811019298884841478",
"193677994690553976273334630919655430404",
"23432378379581234319639641845368433614",
"218153948971139956216629905199572138386",
"223577982859180442155824369544125141367"
],
"threshold": 0.9
},
"deprecated": false,
"target": {
"file": "png.c"
},
"id": "CVE-2019-18603-fb44fab7",
"signature_version": "v1"
}
]