CVE-2018-11593
31.05.2018, 16:29
Espruino before 1.99 allows attackers to cause a denial of service (application crash) and potential Information Disclosure with a user crafted input file via a Buffer Overflow during syntax parsing because strncpy is misused in jslex.c.Enginsight
Vendor | Product | Version |
---|---|---|
espruino | espruino | 𝑥 < 1.99 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References