CVE-2021-33438: Buffer Overflow
Published Jul 26, 2022
·Updated
An issue was discovered in mjs (mJS: Restricted JavaScript engine), ES6 (JavaScript version 6). There is stack buffer overflow in jsonparsearray() in mjs.c.
Affected Software
1 affected component
Cesanta mJS<2.20.0
Remediation
Patch Available
Event History
Jul 26, 2022
CVE Published
via MITRE·12:09 PM
Data Sourced
via MITRE·12:09 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2021-33438.
2
What is the severity of CVE-2021-33438?
The severity of CVE-2021-33438 is medium with a severity value of 5.5.
3
What is affected by CVE-2021-33438?
Cesanta MJS versions up to 2.20.0 are affected by CVE-2021-33438.
4
What is the Common Weakness Enumeration (CWE) ID for CVE-2021-33438?
The Common Weakness Enumeration (CWE) ID for CVE-2021-33438 is CWE-119 and CWE-787.
5
How can I fix CVE-2021-33438?
To fix CVE-2021-33438, update to a version of Cesanta MJS that is higher than 2.20.0.