Lucene search

K
ubuntucveUbuntu.comUB:CVE-2023-29571
HistoryApr 12, 2023 - 12:00 a.m.

CVE-2023-29571

2023-04-1200:00:00
ubuntu.com
ubuntu.com
9
cesanta mjs
vulnerability
dos
gc_sweep
src/mjs_gc.c
openvlbi
unix

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

33.4%

Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via
gc_sweep at src/mjs_gc.c. This vulnerability can lead to a Denial of
Service (DoS).

Notes

Author Note
rodrigo-zaiden OpenVLBI includes mjs code
OSVersionArchitecturePackageVersionFilename
ubuntu22.04noarchopenvlbi< anyUNKNOWN
ubuntu24.04noarchopenvlbi< anyUNKNOWN

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

33.4%

Related for UB:CVE-2023-29571