First published: Fri Sep 22 2023(Updated: )
Cesanta mjs v2.20.0 was discovered to contain a function pointer hijacking vulnerability via the function mjs_get_ptr(). This vulnerability allows attackers to execute arbitrary code via a crafted input.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cesanta MJS | =2.20.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-43338 is a function pointer hijacking vulnerability in Cesanta mjs v2.20.0.
CVE-2023-43338 has a severity rating of 9.8, which is considered critical.
The affected software is Cesanta mjs v2.20.0.
Attackers can exploit CVE-2023-43338 by executing arbitrary code through a crafted input.
Yes, you can refer to the GitHub issue #250 of Cesanta mjs for more details on CVE-2023-43338.