Описание
The BasicJsonStringifier::SerializeJSArray function in json-stringifier.h in the JSON stringifier in Google V8, as used in Google Chrome before 47.0.2526.73, improperly loads array elements, which allows remote attackers to cause a denial of service (out-of-bounds memory access) or possibly have unspecified other impact via crafted JavaScript code.
Релиз | Статус | Примечание |
---|---|---|
artful | DNE | |
bionic | DNE | |
cosmic | DNE | |
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
precise | ignored | end of life |
precise/esm | DNE | precise was needs-triage |
trusty | DNE | |
trusty/esm | DNE | |
upstream | needs-triage |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
artful | ignored | end of life |
bionic | ignored | end of standard support |
cosmic | ignored | end of life |
devel | ignored | libv8 not supported |
esm-apps/bionic | ignored | libv8 not supported |
esm-apps/xenial | ignored | libv8 not supported |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was ignored [libv8 not supported]] |
precise | DNE | |
precise/esm | DNE | |
trusty | ignored | end of standard support |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
artful | ignored | end of life |
bionic | not-affected | 8.10.0~dfsg-2 |
cosmic | not-affected | 8.11.2~dfsg-1 |
devel | not-affected | 8.11.2~dfsg-1 |
esm-apps/bionic | not-affected | 8.10.0~dfsg-2 |
esm-apps/xenial | not-affected | 4.2.6~dfsg-1ubuntu4.1 |
esm-infra-legacy/trusty | not-affected | code not present |
precise | ignored | end of life |
precise/esm | DNE | precise was needs-triage |
trusty | not-affected | code not present |
Показывать по
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
The BasicJsonStringifier::SerializeJSArray function in json-stringifier.h in the JSON stringifier in Google V8, as used in Google Chrome before 47.0.2526.73, improperly loads array elements, which allows remote attackers to cause a denial of service (out-of-bounds memory access) or possibly have unspecified other impact via crafted JavaScript code.
The BasicJsonStringifier::SerializeJSArray function in json-stringifier.h in the JSON stringifier in Google V8, as used in Google Chrome before 47.0.2526.73, improperly loads array elements, which allows remote attackers to cause a denial of service (out-of-bounds memory access) or possibly have unspecified other impact via crafted JavaScript code.
The BasicJsonStringifier::SerializeJSArray function in json-stringifie ...
The BasicJsonStringifier::SerializeJSArray function in json-stringifier.h in the JSON stringifier in Google V8, as used in Google Chrome before 47.0.2526.73, improperly loads array elements, which allows remote attackers to cause a denial of service (out-of-bounds memory access) or possibly have unspecified other impact via crafted JavaScript code.
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3