CVE-2023-29571: Buffer Overflow
Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via gcsweep at src/mjsgc.c. This vulnerability can lead to a Denial of Service (DoS).
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-29571?
CVE-2023-29571 is a vulnerability in Cesanta MJS v2.20.0 that can lead to a Denial of Service (DoS) due to memory corruption.
How severe is CVE-2023-29571?
CVE-2023-29571 has a severity rating of medium with a CVSS score of 5.5.
How can the vulnerability CVE-2023-29571 be exploited?
CVE-2023-29571 can be exploited through the gc_sweep function in src/mjs_gc.c, causing a SEGV (segmentation fault) and potential DoS.
Is there a fix available for CVE-2023-29571?
Yes, upgrading to a version of Cesanta MJS that is not affected, if available, is recommended to mitigate CVE-2023-29571.
Where can I find more information about CVE-2023-29571?
More information about CVE-2023-29571 can be found in the GitHub issues page: [https://github.com/cesanta/mjs/issues/241](https://github.com/cesanta/mjs/issues/241)