Jerryscript 3.0.0(commit 1a2c047) was discovered to contain a heap-buffer-overflow via the component lexer_compare_identifier_to_chars at /jerry-core/parser/js/js-lexer.c.
References
Link | Resource |
---|---|
https://github.com/jerryscript-project/jerryscript/issues/5066 | Exploit Issue Tracking Patch |
https://github.com/jerryscript-project/jerryscript/issues/5066 | Exploit Issue Tracking Patch |
Configurations
History
No history.
Information
Published : 2023-05-10 15:15
Updated : 2025-01-27 18:15
NVD link : CVE-2023-31906
Mitre link : CVE-2023-31906
CVE.ORG link : CVE-2023-31906
JSON object : View
Products Affected
jerryscript
- jerryscript
CWE
CWE-787
Out-of-bounds Write