Nginx NJS v0.7.3 was discovered to contain a stack overflow in the function njs_default_module_loader at /src/njs/src/njs_module.c. NOTE: multiple third parties dispute this report, e.g., the behavior is only found in unreleased development code that was not part of the 0.7.2, 0.7.3, or 0.7.4 release
References
Link | Resource |
---|---|
https://github.com/nginx/njs/commit/ab1702c7af9959366a5ddc4a75b4357d4e9ebdc1 | Patch Third Party Advisory |
https://github.com/nginx/njs/issues/491 | Issue Tracking Third Party Advisory |
https://github.com/nginx/njs/issues/493 | Exploit Issue Tracking Patch Third Party Advisory |
https://github.com/nginx/njs/commit/ab1702c7af9959366a5ddc4a75b4357d4e9ebdc1 | Patch Third Party Advisory |
https://github.com/nginx/njs/issues/491 | Issue Tracking Third Party Advisory |
https://github.com/nginx/njs/issues/493 | Exploit Issue Tracking Patch Third Party Advisory |
Configurations
History
21 Nov 2024, 06:58
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/nginx/njs/commit/ab1702c7af9959366a5ddc4a75b4357d4e9ebdc1 - Patch, Third Party Advisory | |
References | () https://github.com/nginx/njs/issues/491 - Issue Tracking, Third Party Advisory | |
References | () https://github.com/nginx/njs/issues/493 - Exploit, Issue Tracking, Patch, Third Party Advisory |
07 Nov 2023, 03:46
Type | Values Removed | Values Added |
---|---|---|
Summary | Nginx NJS v0.7.3 was discovered to contain a stack overflow in the function njs_default_module_loader at /src/njs/src/njs_module.c. NOTE: multiple third parties dispute this report, e.g., the behavior is only found in unreleased development code that was not part of the 0.7.2, 0.7.3, or 0.7.4 release |
Information
Published : 2022-05-25 13:15
Updated : 2024-11-21 06:58
NVD link : CVE-2022-29379
Mitre link : CVE-2022-29379
CVE.ORG link : CVE-2022-29379
JSON object : View
Products Affected
f5
- njs
CWE
CWE-787
Out-of-bounds Write