OESA-2023-1572
Dashboard / Vulnerabilities / OESA-2023-1572
Summary: json-c security update
Details: JSON-C implements a reference counting object model that allows you to easily construct JSON objects in C, output them as JSON formatted strings and parse JSON formatted strings back into the C representation of JSON objects. Security Fix(es): An issue was discovered in json-c through 0.15-20200726. A stack-buffer-overflow exists in the function parseit located in json_parse.c. It allows an attacker to cause code Execution.(CVE-2021-32292)
References: https://www.openeuler.org/en/security/safety-bulletin/detail.html?id=openEuler-SA-2023-1572, https://nvd.nist.gov/vuln/detail/CVE-2021-32292
Affected packages
Package
Name: json-c
Purl: pkg:rpm/openEuler/json-c&distro=openEuler-20.03-LTS-SP3
Affected ranges
Type: ECOSYSTEM
Events:
