CVE-2021-46532: Medium severity mjs vulnerability
Published Jan 27, 2022
·Updated
Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via execexpr at src/mjsexec.c. This vulnerability can lead to a Denial of Service (DoS).
Affected Software
1 affected component
Cesanta mJS=2.20.0
Remediation
Patch Available
Event History
Jan 27, 2022
CVE Published
via MITRE·08:22 PM
Data Sourced
via MITRE·08:22 PM
Description
Frequently Asked Questions
1
What is CVE-2021-46532?
CVE-2021-46532 is a SEGV vulnerability in Cesanta MJS v2.20.0, which can lead to a Denial of Service (DoS).
2
How severe is CVE-2021-46532?
CVE-2021-46532 has a severity score of 5.5 (medium).
3
How can CVE-2021-46532 be exploited?
CVE-2021-46532 can be exploited by executing malicious code via the exec_expr function in src/mjs_exec.c.
4
Which version of Cesanta MJS is affected by CVE-2021-46532?
Cesanta MJS v2.20.0 is affected by CVE-2021-46532.
5
Is there a fix for CVE-2021-46532?
At the moment, there is no known fix for CVE-2021-46532. It is recommended to update to a patched version once it becomes available.