First published: Tue Jun 06 2023(Updated: )
There's a memory leak in yajl 2.1.0 with use of yajl_tree_parse function. which will cause out-of-memory in server and cause crash.
Credit: cve@mitre.org cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Yajl Project Yajl | =2.1.0 | |
Fedoraproject Fedora | =37 | |
Fedoraproject Fedora | =38 | |
Debian Debian Linux | =10.0 | |
ubuntu/yajl | <2.0.4-4ubuntu0.1~ | 2.0.4-4ubuntu0.1~ |
ubuntu/yajl | <2.1.0-2ubuntu0.16.04.1~ | 2.1.0-2ubuntu0.16.04.1~ |
ubuntu/yajl | <2.1.0-2ubuntu0.18.04.1~ | 2.1.0-2ubuntu0.18.04.1~ |
ubuntu/yajl | <2.1.0-3+ | 2.1.0-3+ |
ubuntu/yajl | <2.1.0-3ubuntu0.20.04.1 | 2.1.0-3ubuntu0.20.04.1 |
ubuntu/yajl | <2.1.0-3ubuntu0.22.04.1 | 2.1.0-3ubuntu0.22.04.1 |
ubuntu/yajl | <2.1.0-3ubuntu0.23.04.1 | 2.1.0-3ubuntu0.23.04.1 |
debian/epics-base | <=7.0.3.1-4<=7.0.8+dfsg1-1 | |
debian/r-cran-jsonlite | <=1.6+dfsg-1<=1.7.2+dfsg-1<=1.8.4+dfsg-1<=1.8.8+dfsg-1 | |
debian/ruby-yajl | 1.3.1-1 1.4.1-1 1.4.3-1 | |
debian/yajl | <=2.1.0-3 | 2.1.0-3+deb10u2 2.1.0-3+deb11u2 2.1.0-3+deb12u2 2.1.0-5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.