CVE-2023-50044: Critical severity mjs vulnerability
Published Dec 20, 2023
·Updated
Cesanta MJS 2.20.0 has a getpropbuiltinforeign out-of-bounds read if a Built-in API name occurs in a substring of an input string.
Affected Software
1 affected component
Cesanta mJS=2.22.0
Remediation
Patch Available
Event History
Dec 20, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-50044?
CVE-2023-50044 has a severity rating of medium due to its potential for causing out-of-bounds read vulnerabilities.
2
How do I fix CVE-2023-50044?
To fix CVE-2023-50044, upgrade to Cesanta MJS version 2.22.0 or later, where the vulnerability is addressed.
3
What is CVE-2023-50044?
CVE-2023-50044 is a vulnerability in Cesanta MJS that allows an out-of-bounds read if a Built-in API name appears in a substring of an input string.
4
Which versions of Cesanta MJS are affected by CVE-2023-50044?
Cesanta MJS versions prior to 2.22.0 are affected by CVE-2023-50044.
5
Is CVE-2023-50044 being actively exploited?
As of the latest information, there are no known active exploits for CVE-2023-50044 reported.