Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
jsish version 2.4.70 2.047 contains a CWE-125: Out-of-bounds Read vulnerability in function jsi_ObjArrayLookup (jsiObj.c:274) that can result in Crash due to segmentation fault. This attack appear to be exploitable via The victim must execute crafted javascript code. This vulnerability appears to have been fixed in 2.4.71.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Jsish 缓冲区错误漏洞
Vulnerability Description
Jsish是一款使用C语言编写的、内置数据库的小型JavaScript解析器。 Jsish 2.4.70 2.047版本中的‘jsi_ObjArrayLookup’函数存在越界读取漏洞。攻击者可通过特制的JavaScript代码利用该漏洞造成拒绝服务(崩溃和段错误)。
CVSS Information
N/A
Vulnerability Type
N/A