Jsish 2.4.77 2.0477 is affected by: Out-of-bounds Read. The impact is: denial of service. The component is: function lexer_getchar (jsiLexer.c:9). The attack vector is: executing crafted javascript code. The fixed version is: 2.4.78.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://jsish.org/fossil/jsi/tktview/3a069014976f3422d9d96821dc555c8326c02ae3 | patch vendor advisory exploit |