Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 418
Alerts This Week
Warning Icon 1 418

Mageia 9: MGASA-2024-0156 moderate: cJSON segmentation violations

mageia
Calendar Grey April 30, 2024
Scroller Mageia
Recent modifications in cJSON packages resolve significant segmentation vulnerabilities within Mageia 9. Discover details regarding the newly applied security corrections.
cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_InsertItemInArray at cJSON.c

Summary

cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_InsertItemInArray at cJSON.c. (CVE-2023-50471) cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_SetValuestring at cJSON.c. (CVE-2023-50472)

References

- https://bugs.mageia.org/show_bug.cgi?id=33133

- https://www.cve.org/CVERecord?id=CVE-2023-50471

- https://www.cve.org/CVERecord?id=CVE-2023-50472

Resolution

SRPMS

- 9/core/cjson-1.7.15-2.1.mga9

Publication date: 30 Apr 2024
URL: https://advisories.mageia.org/MGASA-2024-0156.html
Type: security
CVE: CVE-2023-50471, CVE-2023-50472

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.