CVE-2021-42863
Published: 12 May 2022
A buffer overflow in ecma_builtin_typedarray_prototype_filter() in JerryScript version fe3a5c0 allows an attacker to construct a fake object or a fake arraybuffer with unlimited size.
Priority
CVSS 3 base score: 9.8
References
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-42863
- https://github.com/jerryscript-project/jerryscript/issues/4793
- https://github.com/jerryscript-project/jerryscript/pull/4794
- https://github.com/jerryscript-project/jerryscript/commit/4e8d6344a8b5cf8f00bd3d5e869147af06d0189e
- NVD
- Launchpad
- Debian