Описание
cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_SetValuestring at cJSON.c.
A flaw was discovered in the cJSON package. Certain input conditions may trigger a null pointer dereference, which can lead to a denial of service.
Дополнительная информация
Статус:
Low
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=2254643cjson: segmentation violation in function cJSON_SetValuestring
4 Medium
CVSS3
Связанные уязвимости
CVSS3: 7.5
ubuntu
больше 1 года назад
cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_SetValuestring at cJSON.c.
CVSS3: 7.5
nvd
больше 1 года назад
cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_SetValuestring at cJSON.c.
CVSS3: 7.5
debian
больше 1 года назад
cJSON v1.7.16 was discovered to contain a segmentation violation via t ...
CVSS3: 7.5
github
больше 1 года назад
cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_SetValuestring at cJSON.c.
4 Medium
CVSS3