CVE-2024-33263: Medium severity quickjs vulnerability
Published Apr 26, 2024
·Updated
Last updated 15 April 2025
Other sources
QuickJS commit 3b45d15 was discovered to contain an Assertion Failure via JSFreeRuntime(JSRuntime ) at quickjs.c.
— NVD
Affected Software
3 affected componentsFixes available
debian/quickjs
2024.01.13-5
QuickJS QuickJS
Bellard Quickjs=2024-03-23
Event History
Apr 26, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
May 14, 2024
Data Sourced
via NVD·03:37 PM
DescriptionSeverity
Data Sourced
via NVD·03:37 PM
WeaknessAffected Software
Apr 15, 2025
Data Sourced
via Ubuntu·09:59 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Launchpad·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-33263?
CVE-2024-33263 has been classified as a moderate severity vulnerability due to the assertion failure which can lead to application instability.
2
How do I fix CVE-2024-33263?
To fix CVE-2024-33263, you should upgrade to the version 2024.01.13-5 of the QuickJS package.
3
Which software is affected by CVE-2024-33263?
CVE-2024-33263 affects QuickJS software instances, specifically noted in the Debian quickjs package.
4
What is the impact of CVE-2024-33263?
The impact of CVE-2024-33263 includes potential application crashes and instability due to an assertion failure.
5
Who reported CVE-2024-33263?
CVE-2024-33263 was discovered in a QuickJS commit and reported through their issue tracking system.