Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-36109

Опубликовано: 20 сент. 2023
Источник: debian
EPSS Средний

Описание

Buffer Overflow vulnerability in JerryScript version 3.0, allows remote attackers to execute arbitrary code via ecma_stringbuilder_append_raw component at /jerry-core/ecma/base/ecma-helpers-string.c.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
iotjsremovedpackage
iotjsignoredbusterpackage

Примечания

  • https://github.com/jerryscript-project/jerryscript/issues/5080

EPSS

Процентиль: 95%
0.2036
Средний

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 2 лет назад

Buffer Overflow vulnerability in JerryScript version 3.0, allows remote attackers to execute arbitrary code via ecma_stringbuilder_append_raw component at /jerry-core/ecma/base/ecma-helpers-string.c.

CVSS3: 9.8
nvd
больше 2 лет назад

Buffer Overflow vulnerability in JerryScript version 3.0, allows remote attackers to execute arbitrary code via ecma_stringbuilder_append_raw component at /jerry-core/ecma/base/ecma-helpers-string.c.

CVSS3: 9.8
github
больше 2 лет назад

Buffer Overflow vulnerability in JerryScript version 3.0, allows remote attackers to execute arbitrary code via ecma_stringbuilder_append_raw component at /jerry-core/ecma/base/ecma-helpers-string.c.

EPSS

Процентиль: 95%
0.2036
Средний