CVE-2020-22884: Buffer Overflow
Published Jul 13, 2021
·Updated
Buffer overflow vulnerability in function jsvGetStringChars in Espruino before RELEASE2V09, allows remote attackers to execute arbitrary code.
Affected Software
1 affected component
Espruino Espruino<2.09
Event History
Jul 13, 2021
CVE Published
via MITRE·02:44 PM
Data Sourced
via MITRE·02:44 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-22884.
2
What is the severity of CVE-2020-22884?
CVE-2020-22884 has a severity rating of critical (9.8).
3
Which software versions are affected by CVE-2020-22884?
Versions of Espruino before RELEASE_2V09 are affected by CVE-2020-22884.
4
How can remote attackers exploit CVE-2020-22884?
Remote attackers can exploit CVE-2020-22884 to execute arbitrary code.
5
Is there a fix available for CVE-2020-22884?
Yes, a fix is available in Espruino RELEASE_2V09 and later versions.