Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-07934
HistoryJan 27, 2022 - 12:00 a.m.

Jsish boolean buffer overflow vulnerability

2022-01-2700:00:00
China National Vulnerability Database
www.cnvd.org.cn
6
jsish
buffer overflow
vulnerability
javascript parser
memory operation
incorrect read
incorrect write
heap overflow
security advisory

EPSS

0.001

Percentile

35.0%

Jsish is a small JavaScript parser with a built-in database written in C. Jsish is vulnerable to a buffer overflow vulnerability that originates when a networked system or product performs an operation on memory without properly validating data boundaries, resulting in an incorrect read or write operation to an associated other memory location. An attacker could use this vulnerability to cause a buffer overflow or heap overflow, among other things.

EPSS

0.001

Percentile

35.0%

Related for CNVD-2022-07934