CVE-2022-34029Out-of-bounds Read in F5 NJS

CWE-125Out-of-bounds Read3 documents3 sources
Severity
9.1CRITICALNVD
EPSS
0.4%
top 39.80%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 18
Latest updateJul 19

Description

Nginx NJS v0.7.4 was discovered to contain an out-of-bounds read via njs_scope_value at njs_scope.h.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:HExploitability: 3.9 | Impact: 5.2

Affected Packages1 packages

NVDf5/njs0.7.4

Patches

🔴Vulnerability Details

2
GHSA
GHSA-q72m-4j33-x7xw: Nginx NJS v02022-07-19
CVEList
CVE-2022-34029: Nginx NJS v02022-07-18
CVE-2022-34029 — Out-of-bounds Read in F5 NJS | cvebase