Описание
There's a memory leak in yajl 2.1.0 with use of yajl_tree_parse function. which will cause out-of-memory in server and cause crash.
Ссылки
- ExploitIssue TrackingPatchThird Party Advisory
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
- ExploitIssue TrackingPatchThird Party Advisory
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:yajl_project:yajl:2.1.0:*:*:*:*:*:*:*
Конфигурация 2
Одно из
cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:*
Конфигурация 3
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
EPSS
Процентиль: 32%
0.00119
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-401
CWE-401
Связанные уязвимости
CVSS3: 6.5
ubuntu
около 2 лет назад
There's a memory leak in yajl 2.1.0 with use of yajl_tree_parse function. which will cause out-of-memory in server and cause crash.
CVSS3: 6.5
redhat
около 2 лет назад
There's a memory leak in yajl 2.1.0 with use of yajl_tree_parse function. which will cause out-of-memory in server and cause crash.
CVSS3: 6.5
debian
около 2 лет назад
There's a memory leak in yajl 2.1.0 with use of yajl_tree_parse functi ...
EPSS
Процентиль: 32%
0.00119
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-401
CWE-401