NA

CVE-2021-32292

Published: 22/08/2023 Updated: 29/09/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An issue exists in json-c from 20200420 (post 0.14 unreleased code) up to and including 0.15-20200726. A stack-buffer-overflow exists in the auxiliary sample program json_parse which is located in the function parseit.

Vulnerable Product Search on Vulmon Subscribe to Product

json-c project json-c 0.15-20200726

Vendor Advisories

An invalid memory access was discovered in json-c, a JSON library which could result in denial of service For the oldstable distribution (bullseye), this problem has been fixed in version 015-2+deb11u1 We recommend that you upgrade your json-c packages For the detailed security status of json-c please refer to its security tracker page at: http ...