CVE-2022-43284: High severity F5 Njs vulnerability
Published Oct 28, 2022
·Updated
DISPUTED Nginx NJS v0.7.2 to v0.7.4 was discovered to contain a segmentation violation via njsscopevalidvalue at njsscope.h. NOTE: the vendor disputes the significance of this report because NJS does not operate on untrusted input.
Affected Software
1 affected component
F5 Njs>=0.7.2<=0.7.4
Remediation
Patch Available
Patch Available
Event History
Oct 28, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Disputed
09:15 PM
Data Sourced
via NVD·09:15 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-43284.
2
What is the severity level of CVE-2022-43284?
The severity level of CVE-2022-43284 is high (7.5).
3
What software versions are affected by CVE-2022-43284?
Nginx NJS versions 0.7.2 to 0.7.4 are affected by CVE-2022-43284.
4
What is the nature of the vulnerability in CVE-2022-43284?
CVE-2022-43284 is a segmentation violation vulnerability in Nginx NJS.
5
Is there any dispute regarding the significance of CVE-2022-43284?
Yes, the vendor disputes the significance of this report.