CVE-2021-46525: Use After Free
Published Jan 27, 2022
·Updated
Cesanta MJS v2.20.0 was discovered to contain a heap-use-after-free via mjsapply at src/mjsexec.c.
Affected Software
1 affected component
Cesanta mJS=2.20.0
Remediation
Patch Available
Event History
Jan 27, 2022
CVE Published
via MITRE·08:22 PM
Data Sourced
via MITRE·08:22 PM
Description
Frequently Asked Questions
1
What is CVE-2021-46525?
CVE-2021-46525 is a heap-use-after-free vulnerability found in Cesanta MJS version 2.20.0.
2
How severe is CVE-2021-46525?
CVE-2021-46525 has a severity score of 7.8, which is considered high.
3
How does CVE-2021-46525 affect Cesanta MJS?
CVE-2021-46525 affects Cesanta MJS version 2.20.0.
4
What is the CWE category for CVE-2021-46525?
CVE-2021-46525 falls under the CWE category 416.
5
Is there a fix available for CVE-2021-46525?
Yes, it is recommended to update Cesanta MJS to a version that is not affected by this vulnerability.