Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Peter Gal

#25066of 53,633
9.8Total CVSS
Vulnerabilities · 1
PT-2022-11475
9.8
2022-04-05
Unknown · Jerryscript · CVE-2021-41751
**Name of the Vulnerable Software and Affected Versions** Jerryscript versions prior to commit e1ce7dd7271288be8c0c8136eea9107df73a8ce2 **Description** A buffer overflow vulnerability exists in the file ecma-builtin-array-prototype.c, specifically in the function `ecma builtin array prototype object slice` at line 909. This issue affects Jerryscript before the commit e1ce7dd7271288be8c0c8136eea9107df73a8ce2 on Oct 20, 2021. **Recommendations** As a temporary workaround, consider disabling the `ecma builtin array prototype object slice` function until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.