PT-2024-40744 · Git+1 · Quickjs

Published

2024-04-30

·

Updated

2024-04-30

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions: No specific software or versions are mentioned in the provided description.
Description: The issue is related to a heap-buffer-overflow read, which was identified through an OSS-Fuzz report. The crash state indicates the involvement of JavaScript internal calls, specifically JS CallInternal, async func resume, js async function resume. No information is provided about the estimated number of potentially affected devices or real-world incidents.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

OSV-2024-389

Affected Products

Quickjs