[Bugs] [Bug 13277] New: [CVE 21] mujs 1.3.1 CVEs found
bugzilla
bugzilla на rosalinux.ru
Ср Май 3 17:00:48 MSK 2023
https://bugzilla.rosalinux.ru/show_bug.cgi?id=13277
Platform: 2021.1
Bug ID: 13277
Summary: [CVE 21] mujs 1.3.1 CVEs found
Classification: ROSA-based products
Product: ROSA Fresh
Version: All
Hardware: All
URL: CVE-2016-10141, CVE-2016-9294, CVE-2017-5627,
CVE-2017-5628, CVE-2022-44789,
OS: Linux
Status: CONFIRMED
Severity: normal
Priority: Normal
Component: System (kernel, glibc, systemd, bash, PAM...)
Assignee: bugs на lists.rosalinux.ru
Reporter: y.tumanov на rosalinux.ru
QA Contact: bugs на lists.rosalinux.ru
CC: s.matveev на rosalinux.ru, y.tumanov на rosalinux.ru
Target Milestone: ---
Flags: secteam_verified?
Please patch CVEs for package mujs version 1.3.1
INFO (CVEs are): mujs 1.3.1
cves found
CVE-2016-10141
Desc: An integer overflow vulnerability was observed in the regemit function in
regexp.c in Artifex Software, Inc. MuJS before
fa3d30fd18c348bb4b1f3858fb860f4fcd4b2045. The attack requires a regular
expression with nested repetition. A successful exploitation of this issue can
lead to code execution or a denial of service (buffer overflow) condition.
Link: https://nvd.nist.gov/vuln/detail/CVE-2016-10141
Severity: CRITICAL
CVE-2016-9294
Desc: Artifex Software, Inc. MuJS before
5008105780c0b0182ea6eda83ad5598f225be3ee allows context-dependent attackers to
conduct "denial of service (application crash)" attacks by using the "malformed
labeled break/continue in JavaScript" approach, related to a "NULL pointer
dereference" issue affecting the jscompile.c component.
Link: https://nvd.nist.gov/vuln/detail/CVE-2016-9294
Severity: HIGH
CVE-2017-5627
Desc: An issue was discovered in Artifex Software, Inc. MuJS before
4006739a28367c708dea19aeb19b8a1a9326ce08. The jsR_setproperty function in
jsrun.c lacks a check for a negative array length. This leads to an integer
overflow in the js_pushstring function in jsrun.c when parsing a specially
crafted JS file.
Link: https://nvd.nist.gov/vuln/detail/CVE-2017-5627
Severity: HIGH
CVE-2017-5628
Desc: An issue was discovered in Artifex Software, Inc. MuJS before
8f62ea10a0af68e56d5c00720523ebcba13c2e6a. The MakeDay function in jsdate.c does
not validate the month, leading to an integer overflow when parsing a specially
crafted JS file.
Link: https://nvd.nist.gov/vuln/detail/CVE-2017-5628
Severity: HIGH
CVE-2022-44789
Desc: A logical issue in O_getOwnPropertyDescriptor() in Artifex MuJS 1.0.0
through 1.3.x before 1.3.2 allows an attacker to achieve Remote Code Execution
through memory corruption, via the loading of a crafted JavaScript file.
Link: https://nvd.nist.gov/vuln/detail/CVE-2022-44789
Severity: HIGH
--
You are receiving this mail because:
You are the QA Contact for the bug.
You are the assignee for the bug.
----------- следущая часть -----------
Вложение в формате HTML было извлечено…
URL: <http://lists.rosalinux.ru/pipermail/bugs/attachments/20230503/ecf44bf5/attachment.html>
Подробная информация о списке рассылки Bugs