Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cqmh-mpx2-g633

Опубликовано: 17 мая 2022
Источник: github
Github: Прошло ревью
CVSS4: 6.9

Описание

Improper Restriction of Operations within the Bounds of a Memory Buffer in python-cjson

Buffer overflow in Dan Pascu python-cjson 1.0.5, when UCS-4 encoding is enabled, allows context-dependent attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors involving crafted Unicode input to the cjson.encode function.

Пакеты

Наименование

python-cjson

pip
Затронутые версииВерсия исправления

<= 1.0.5

1.0.5.1

EPSS

Процентиль: 71%
0.00692
Низкий

6.9 Medium

CVSS4

Дефекты

CWE-119

Связанные уязвимости

ubuntu
больше 15 лет назад

Buffer overflow in Dan Pascu python-cjson 1.0.5, when UCS-4 encoding is enabled, allows context-dependent attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors involving crafted Unicode input to the cjson.encode function.

nvd
больше 15 лет назад

Buffer overflow in Dan Pascu python-cjson 1.0.5, when UCS-4 encoding is enabled, allows context-dependent attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors involving crafted Unicode input to the cjson.encode function.

debian
больше 15 лет назад

Buffer overflow in Dan Pascu python-cjson 1.0.5, when UCS-4 encoding i ...

EPSS

Процентиль: 71%
0.00692
Низкий

6.9 Medium

CVSS4

Дефекты

CWE-119