USN-7125-1: RapidJSON vulnerability
It was discovered that RapidJSON incorrectly parsed numbers written in scientific notation, leading to an integer underflow. An attacker could possibly use this issue to cause a denial of service, or execute arbitrary code.
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-7125-1?
USN-7125-1 is classified as a high severity vulnerability due to the potential for denial of service and execution of arbitrary code.
How do I fix USN-7125-1?
To mitigate USN-7125-1, upgrade to the recommended versions of rapidjson-dev as specified in the advisory.
What systems are affected by USN-7125-1?
USN-7125-1 affects multiple versions of Ubuntu, including 16.04, 18.04, 20.04, 22.04, and 24.04.
What is the nature of the vulnerability in USN-7125-1?
USN-7125-1 is caused by RapidJSON incorrectly parsing numbers in scientific notation, leading to an integer underflow.
Can USN-7125-1 lead to remote code execution?
Yes, an attacker could exploit USN-7125-1 to execute arbitrary code on the affected systems.