First published: Thu Dec 14 2023(Updated: )
cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_InsertItemInArray at cJSON.c.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/cjson | 1.7.14-1+deb11u1 1.7.15-1+deb12u1 1.7.18-3 | |
Lua CJSON | =1.7.16 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-50471 has not been assigned a CVSS score, but it is categorized as a segmentation violation which can lead to application crashes.
To fix CVE-2023-50471, update cJSON to a version later than 1.7.16, such as 1.7.18.
cJSON version 1.7.16 is the affected version in CVE-2023-50471.
CVE-2023-50471 can lead to a segmentation fault, causing instability in applications using cJSON version 1.7.16.
Yes, CVE-2023-50471 affects the cJSON package version 1.7.16 in Debian.