First published: Mon Jul 03 2023(Updated: )
An issue in Jerrscript- project Jerryscrip v. 2.3.0 allows a remote attacker to execute arbitrary code via the ecma_builtin_array_prototype_object_slice parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Jerryscript Jerryscript | =2.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-22597 is a vulnerability in Jerrscript version 2.3.0 that allows a remote attacker to execute arbitrary code.
CVE-2020-22597 has a severity rating of 9.8, which is classified as critical.
CVE-2020-22597 allows a remote attacker to execute arbitrary code by exploiting a flaw in the ecma_builtin_array_prototype_object_slice parameter in Jerrscript version 2.3.0.
Yes, Jerryscript version 2.3.0 is affected by CVE-2020-22597.
The fix for CVE-2020-22597 is to update to a version of Jerryscript that is not affected by the vulnerability.