** DISPUTED ** Nginx NJS v0.7.3 was discovered to contain a stack overflow in the function njs_default_module_loader at /src/njs/src/njs_module.c. NOTE: multiple third parties dispute this report, e.g., the behavior is only found in unreleased development code that was not part of the 0.7.2, 0.7.3, or 0.7.4 release.
References
Link | Resource |
---|---|
https://github.com/nginx/njs/issues/493 | Exploit Issue Tracking Patch Third Party Advisory |
https://github.com/nginx/njs/issues/491 | Issue Tracking Third Party Advisory |
https://github.com/nginx/njs/commit/ab1702c7af9959366a5ddc4a75b4357d4e9ebdc1 | Patch Third Party Advisory |
Configurations
Information
Published : 2022-05-25 06:15
Updated : 2022-06-03 06:58
NVD link : CVE-2022-29379
Mitre link : CVE-2022-29379
JSON object : View
CWE
CWE-787
Out-of-bounds Write
Products Affected
f5
- njs