VulnerabilityAnalyzed
CVE-2024-29489
Jerryscript 2.4.0 has SEGV at ./jerry-core/ecma/base/ecma-helpers.c:238:58 in ecma_get_object_type.
MEDIUM 5.5EPSS 0.34%
Does this matter?
Lower severity and a low EPSS score (0.34%). Track it; it rarely justifies an emergency change on its own.
Description
Jerryscript 2.4.0 has SEGV at ./jerry-core/ecma/base/ecma-helpers.c:238:58 in ecma_get_object_type.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
- EPSS
- 0.34% probability · 27th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-476
- Affected
- jerryscript/jerryscript
- Source
- cve@mitre.org
References
- https://gist.github.com/gandalf4a/9826a897ae1e3c8d1c7e71a1ec71d415Exploit, Patch, Third Party Advisory
- https://github.com/jerryscript-project/jerryscript/commit/cefd391772529c8a9531d7b3c244d78d38be47c6Patch
- https://github.com/jerryscript-project/jerryscript/issues/5101Exploit, Issue Tracking
- https://github.com/jerryscript-project/jerryscript/pull/5129Issue Tracking, Patch
- https://gist.github.com/gandalf4a/9826a897ae1e3c8d1c7e71a1ec71d415Exploit, Patch, Third Party Advisory
- https://github.com/jerryscript-project/jerryscript/commit/cefd391772529c8a9531d7b3c244d78d38be47c6Patch
- https://github.com/jerryscript-project/jerryscript/issues/5101Exploit, Issue Tracking
- https://github.com/jerryscript-project/jerryscript/pull/5129Issue Tracking, Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.