Improper Restriction of Operations within the Bounds of a Memory Buffer in python-cjson
Moderate severity
GitHub Reviewed
Published
May 17, 2022
to the GitHub Advisory Database
•
Updated Oct 15, 2024
Description
Published by the National Vulnerability Database
Jul 2, 2010
Published to the GitHub Advisory Database
May 17, 2022
Reviewed
Jul 8, 2022
Last updated
Oct 15, 2024
Buffer overflow in Dan Pascu python-cjson 1.0.5, when UCS-4 encoding is enabled, allows context-dependent attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors involving crafted Unicode input to the cjson.encode function.
References