CVE-2020-23257: Buffer Overflow
Published Apr 4, 2023
·Updated
Buffer Overflow vulnerability found in Espruino 2v05.41 allows an attacker to cause a denial of service via the function jsvGarbageCollectMarkUsed in file src/jsvar.c.
Affected Software
1 affected component
Espruino Espruino=2.05.41
Event History
Apr 4, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-23257?
The severity of CVE-2020-23257 is high with a score of 7.5.
2
How does CVE-2020-23257 affect Espruino?
CVE-2020-23257 affects Espruino version 2.05.41, allowing an attacker to cause a denial of service.
3
How can an attacker exploit CVE-2020-23257?
An attacker can exploit CVE-2020-23257 by triggering a buffer overflow through the function jsvGarbageCollectMarkUsed in file src/jsvar.c.
4
What is the Common Weakness Enumeration (CWE) of CVE-2020-23257?
The Common Weakness Enumeration (CWE) of CVE-2020-23257 includes CWE-119 and CWE-120.
5
Where can I find more information about CVE-2020-23257?
More information about CVE-2020-23257 can be found at Espruino's website and the GitHub repository for Espruino.