Espruino before 1.99 allows attackers to cause a denial of service (application crash) with a user crafted input file via an integer overflow during syntax parsing. This was addressed by fixing stack size detection on Linux in jsutils.c.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-3615 | Espruino before 1.99 allows attackers to cause a denial of service (application crash) with a user crafted input file via an integer overflow during syntax parsing. This was addressed by fixing stack size detection on Linux in jsutils.c. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-16T20:06:17.122Z
Reserved: 2018-05-31T00:00:00.000Z
Link: CVE-2018-11590
No data.
Status : Modified
Published: 2018-05-31T16:29:00.223
Modified: 2024-11-21T03:43:40.607
Link: CVE-2018-11590
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD