First published: Wed Apr 12 2023(Updated: )
Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via gc_sweep at src/mjs_gc.c. This vulnerability can lead to a Denial of Service (DoS).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cesanta MJS | =2.20.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-29571 is a vulnerability in Cesanta MJS v2.20.0 that can lead to a Denial of Service (DoS) due to memory corruption.
CVE-2023-29571 has a severity rating of medium with a CVSS score of 5.5.
CVE-2023-29571 can be exploited through the gc_sweep function in src/mjs_gc.c, causing a SEGV (segmentation fault) and potential DoS.
Yes, upgrading to a version of Cesanta MJS that is not affected, if available, is recommended to mitigate CVE-2023-29571.
More information about CVE-2023-29571 can be found in the GitHub issues page: [https://github.com/cesanta/mjs/issues/241](https://github.com/cesanta/mjs/issues/241)