CVE-2024-35386
HIGHDescription
An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_do_gc function in the mjs.c file.
Is your site exposed to CVE-2024-35386?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Affected Products
| Vendor | Product |
|---|---|
| cesanta | mjs |
References
Frequently Asked Questions
What is CVE-2024-35386? +
How severe is CVE-2024-35386? +
What products are affected by CVE-2024-35386? +
How do I check if I'm vulnerable to CVE-2024-35386? +
Related Vulnerabilities
Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS …
Integer Overflow or Wraparound vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet …
An Out of Bounds Write in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via …
An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_destroy function …
An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_getretvalpos function …
An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs+0x4ec508 component.