First published: Thu May 09 2019(Updated: )
cJSON before 1.7.11 allows out-of-bounds access, related to multiline comments.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cjson Project Cjson | <1.7.11 | |
Oracle TimesTen In-Memory Database | <18.1.3.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-11835 is a vulnerability in cJSON before version 1.7.11 that allows out-of-bounds access related to multiline comments.
CVE-2019-11835 is considered critical with a severity score of 9.8.
The vulnerability affects cJSON versions prior to 1.7.11 and Oracle TimesTen In-Memory Database versions up to 18.1.3.1.0.
To fix CVE-2019-11835, update cJSON to version 1.7.11 or apply the necessary patches provided by the vendor for Oracle TimesTen In-Memory Database.
More information about CVE-2019-11835 can be found on the GitHub page of cJSON, including the issue reports and the release tag for version 1.7.11.