Опубликовано: 09 мая 2020
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8
CVSS3: 7.8
Описание
json-c through 0.14 has an integer overflow and out-of-bounds write via a large JSON file, as demonstrated by printbuf_memappend.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 0.12.1-1.3ubuntu0.3 |
| devel | released | 0.13.1+dfsg-7ubuntu1 |
| eoan | released | 0.13.1+dfsg-4ubuntu0.3 |
| esm-infra-legacy/trusty | released | 0.11-3ubuntu1.2+esm3 |
| esm-infra/bionic | released | 0.12.1-1.3ubuntu0.3 |
| esm-infra/focal | released | 0.13.1+dfsg-7ubuntu0.3 |
| esm-infra/xenial | released | 0.11-4ubuntu2.6 |
| focal | released | 0.13.1+dfsg-7ubuntu0.3 |
| precise/esm | not-affected | 0.9-1ubuntu1.4 |
| trusty | ignored | end of standard support |
Показывать по
10
EPSS
Процентиль: 50%
0.00265
Низкий
6.8 Medium
CVSS2
7.8 High
CVSS3
Связанные уязвимости
CVSS3: 7.8
redhat
больше 5 лет назад
json-c through 0.14 has an integer overflow and out-of-bounds write via a large JSON file, as demonstrated by printbuf_memappend.
CVSS3: 7.8
nvd
больше 5 лет назад
json-c through 0.14 has an integer overflow and out-of-bounds write via a large JSON file, as demonstrated by printbuf_memappend.
CVSS3: 7.8
msrc
больше 5 лет назад
json-c through 0.14 has an integer overflow and out-of-bounds write via a large JSON file as demonstrated by printbuf_memappend.
CVSS3: 7.8
debian
больше 5 лет назад
json-c through 0.14 has an integer overflow and out-of-bounds write vi ...
EPSS
Процентиль: 50%
0.00265
Низкий
6.8 Medium
CVSS2
7.8 High
CVSS3