Bugzilla – Bug 1214699
VUL-0: CVE-2021-32292: json-c: stack-buffer-overflow in function parseit located in json_parse.c
Last modified: 2023-09-01 07:41:07 UTC
CVE-2021-32292 An issue was discovered in json-c through 0.15-20200726. A stack-buffer-overflow exists in the function parseit located in json_parse.c. It allows an attacker to cause code Execution. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2021-32292 https://www.cve.org/CVERecord?id=CVE-2021-32292 https://github.com/json-c/json-c/issues/654
Upstream patch: https://github.com/json-c/json-c/pull/655 Our codestream are either already fixed or don't contain the affected code. Closing.