ZeroHour

CVE-2020-13649

CVSS 3.1
7.5 high
EPSS
2%p81
Published
()
Modified
Description

parser/js/js-scanner.c in JerryScript 2.2.0 mishandles errors during certain out-of-memory conditions, as demonstrated by a scanner_reverse_info_list NULL pointer dereference and a scanner_scan_all assertion failure.

Vendors
jerryscript
Products
jerryscript
Weakness
CWE-476, CWE-617, CWE-754
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.