Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-31755

Опубликовано: 26 апр. 2024
Источник: debian
EPSS Низкий

Описание

cJSON v1.7.17 was discovered to contain a segmentation violation, which can trigger through the second parameter of function cJSON_SetValuestring at cJSON.c.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
cjsonfixed1.7.18-1package
cjsonfixed1.7.15-1+deb12u2bookwormpackage
cjsonfixed1.7.14-1+deb11u1bullseyepackage
cjsonpostponedbusterpackage

Примечания

  • https://github.com/DaveGamble/cJSON/issues/839

  • https://github.com/DaveGamble/cJSON/pull/840

  • https://github.com/DaveGamble/cJSON/commit/7e4d5dabe7a9b754c601f214e65b544e67ba9f59 (v1.7.18)

EPSS

Процентиль: 76%
0.01027
Низкий

Связанные уязвимости

CVSS3: 7.6
ubuntu
больше 1 года назад

cJSON v1.7.17 was discovered to contain a segmentation violation, which can trigger through the second parameter of function cJSON_SetValuestring at cJSON.c.

CVSS3: 7.5
redhat
больше 1 года назад

cJSON v1.7.17 was discovered to contain a segmentation violation, which can trigger through the second parameter of function cJSON_SetValuestring at cJSON.c.

CVSS3: 7.6
nvd
больше 1 года назад

cJSON v1.7.17 was discovered to contain a segmentation violation, which can trigger through the second parameter of function cJSON_SetValuestring at cJSON.c.

CVSS3: 7.6
msrc
больше 1 года назад

Описание отсутствует

CVSS3: 7.6
github
больше 1 года назад

cJSON v1.7.17 was discovered to contain a segmentation violation, which can trigger through the second parameter of function cJSON_SetValuestring at cJSON.c.

EPSS

Процентиль: 76%
0.01027
Низкий