PT-2022-11475 · Unknown · Jerryscript

Galpeter

+1

·

Published

2022-04-05

·

Updated

2022-04-14

·

CVE-2021-41751

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Jerryscript versions prior to commit e1ce7dd7271288be8c0c8136eea9107df73a8ce2
Description A buffer overflow vulnerability exists in the file ecma-builtin-array-prototype.c, specifically in the function ecma builtin array prototype object slice at line 909. This issue affects Jerryscript before the commit e1ce7dd7271288be8c0c8136eea9107df73a8ce2 on Oct 20, 2021.
Recommendations As a temporary workaround, consider disabling the ecma builtin array prototype object slice function until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-41751

Affected Products

Jerryscript