CVE-2021-46527: Buffer Overflow
Published Jan 27, 2022
·Updated
Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via mjsgetcstring at src/mjsstring.c.
Affected Software
1 affected component
Cesanta mJS=2.20.0
Remediation
Patch Available
Event History
Jan 27, 2022
CVE Published
via MITRE·08:22 PM
Data Sourced
via MITRE·08:22 PM
Description
Frequently Asked Questions
1
What is CVE-2021-46527?
CVE-2021-46527 is a vulnerability in Cesanta MJS v2.20.0 that allows for a heap buffer overflow through mjs_get_cstring at src/mjs_string.c.
2
How severe is CVE-2021-46527?
CVE-2021-46527 has a severity rating of 7.8 (high).
3
How can I fix CVE-2021-46527?
To fix CVE-2021-46527, update Cesanta MJS to version 2.20.1 or later.
4
Where can I find more information about CVE-2021-46527?
You can find more information about CVE-2021-46527 at the following reference: https://github.com/cesanta/mjs/issues/197
5
What is the CWE ID for CVE-2021-46527?
The CWE ID for CVE-2021-46527 is CWE-119 and CWE-787.