CVE-2022-25044: Buffer Overflow
Espruino 2v11.251 was discovered to contain a stack buffer overflow via src/jsvar.c in jsvNewFromString.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2022-25044?
CVE-2022-25044 is a vulnerability discovered in Espruino 2v11.251 that allows a stack buffer overflow via src/jsvar.c in jsvNewFromString.
What is the severity of CVE-2022-25044?
CVE-2022-25044 has a severity rating of 7.8 (high).
What software versions are affected by CVE-2022-25044?
Espruino version 2.11.251 is affected by CVE-2022-25044.
How can I fix CVE-2022-25044?
It is recommended to update to a patched version of Espruino that addresses the vulnerability.
Where can I find more information about CVE-2022-25044?
More information about CVE-2022-25044 can be found at the following references: <a href='https://github.com/espruino/Espruino/commit/e069be2ecc5060ef47391716e4de94999595b260'>https://github.com/espruino/Espruino/commit/e069be2ecc5060ef47391716e4de94999595b260</a> and <a href='https://github.com/espruino/Espruino/issues/2142'>https://github.com/espruino/Espruino/issues/2142</a>.