CVE-2020-24345
13.08.2020, 19:15
JerryScript through 2.3.0 allows stack consumption via function a(){new new Proxy(a,{})}JSON.parse("[]",a). NOTE: the vendor states that the problem is the lack of the --stack-limit optionEnginsight| Vendor | Product | Version |
|---|---|---|
| jerryscript | jerryscript | 𝑥 ≤ 2.3.0 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration