PT-2026-45428 · Git+1 · Janet
CVSS v3.1
3.3
Low
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
janet-lang janet versions prior to 1.41.1
Description
A flaw in the
doframe() function within the src/core/debug.c file allows for an out-of-bounds read, which occurs when a specific manipulation is performed. This issue requires local access to be exploited.Recommendations
Update janet-lang janet to version 1.41.1 or apply patch ed17dd2c5913a23fb1107251e44a9410a3c30cf5.
As a temporary mitigation, restrict local access to the system to prevent exploitation of the
doframe() function.Exploit
Fix
Buffer Overflow
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Janet