CVE-2022-31306: Use After Free
Published Jun 21, 2022
·Updated
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njsarrayconverttoslowarray at src/njsarray.c.
Affected Software
1 affected component
F5 Njs=0.7.2
Remediation
Event History
Jun 21, 2022
CVE Published
via MITRE·12:57 PM
Data Sourced
via MITRE·12:57 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-31306.
2
What is the severity of CVE-2022-31306?
The severity of CVE-2022-31306 is medium with a severity value of 5.5.
3
What is the affected software for CVE-2022-31306?
The affected software for CVE-2022-31306 is Nginx NJS v0.7.2.
4
What is the fix for CVE-2022-31306?
There is no official fix available for CVE-2022-31306 at the moment. It is recommended to follow the updates on the official GitHub repository for Nginx NJS for any future patches or fixes.
5
What is the Common Weakness Enumeration (CWE) ID for CVE-2022-31306?
The CWE ID for CVE-2022-31306 is 416.