CVE-2021-33442: Null Pointer Dereference
Published Jul 26, 2022
·Updated
An issue was discovered in mjs (mJS: Restricted JavaScript engine), ES6 (JavaScript version 6). There is NULL pointer dereference in jsonprintf() in mjs.c.
Affected Software
1 affected component
Cesanta mJS<2.20.0
Remediation
Patch Available
Event History
Jul 26, 2022
CVE Published
via MITRE·12:09 PM
Data Sourced
via MITRE·12:09 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-33442.
2
What is the severity of CVE-2021-33442?
The severity of CVE-2021-33442 is medium with a CVSS score of 5.5.
3
What is the affected software?
The affected software is Cesanta MJS version up to exclusive 2.20.0.
4
What is the CWE ID associated with CVE-2021-33442?
The CWE ID associated with CVE-2021-33442 is CWE-476.
5
How can I fix the vulnerability in Cesanta MJS?
To fix the vulnerability in Cesanta MJS, update to a version above 2.20.0.