CVE-2024-35385: Medium severity mjs vulnerability
Published May 21, 2024
·Updated
An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjsmkffisig function in the mjs.c file.
Affected Software
2 affected components
Cesanta mJS
Cesanta mJS=2.20.0
Event History
Jan 1, 1970
CVE Published
via MITRE·12:00 AM
May 21, 2024
CVE Published
via NVD·02:15 PM
Aug 2, 2024
Data Sourced
via MITRE·03:13 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-35385?
CVE-2024-35385 is rated as a denial of service vulnerability, which can be exploited by remote attackers.
2
How do I fix CVE-2024-35385?
To mitigate CVE-2024-35385, users should upgrade to the latest version of Cesanta mjs that addresses this issue.
3
Which versions of Cesanta mjs are affected by CVE-2024-35385?
CVE-2024-35385 specifically affects Cesanta mjs version 2.20.0.
4
How can an attacker exploit CVE-2024-35385?
An attacker can exploit CVE-2024-35385 by sending crafted inputs to the mjs_mk_ffi_sig function.
5
What are the potential impacts of CVE-2024-35385?
The potential impact of CVE-2024-35385 is a denial of service, which can disrupt service availability.