Jsish 2.4.70 2.047 is affected by: Use After Free. The impact is: denial of service and possibly arbitrary code execution. The component is: function Jsi_RegExpNew (jsi/jsiRegexp.c:39). The attack vector is: executing crafted javascript code. The fixed version is: after commit 48a66c798d.
References
Link Resource
https://jsish.org/fossil/jsi/tktview?name=65c8965977 Exploit Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: dwf

Published: 2019-07-24T11:52:20

Updated: 2019-07-24T11:52:20

Reserved: 2019-03-20T00:00:00


Link: CVE-2019-1010177

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-07-24T12:15:11.080

Modified: 2019-08-01T15:45:19.173


Link: CVE-2019-1010177

JSON object: View

cve-icon Redhat Information

No data.

CWE