PT-2022-11476 · Unknown · Jerryscript

Marckweio

·

Published

2022-04-05

·

Updated

2023-08-08

·

CVE-2021-41752

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Jerryscript versions prior to commit e1ce7dd7271288be8c0c8136eea9107df73a8ce2
Description The issue is caused by an unbounded recursive call to the new opt() function, leading to a stack overflow. This occurs in Jerryscript before the specified commit on October 20, 2021.
Recommendations For versions prior to commit e1ce7dd7271288be8c0c8136eea9107df73a8ce2, consider updating to a version that includes the fix for this issue. As a temporary workaround, consider disabling the new opt() function until a patch is available.

Exploit

Fix

Uncontrolled Recursion

Weakness Enumeration

Related Identifiers

CVE-2021-41752

Affected Products

Jerryscript