Logo
vulnerabilityCVE-2020-12762
Name
CVE-2020-12762
Source
NVD ( link)Debian ( link)
Description
json-c through 0.14 has an integer overflow and out-of-bounds write via a large JSON file, as demonstrated by printbuf_memappend.
Published Date
Updated Date
Workaround
-
Advisories
https://usn.ubuntu.com/4360-1/Third Party Advisory
https://usn.ubuntu.com/4360-4/Third Party Advisory
https://usn.ubuntu.com/4360-1/Third Party Advisory
https://usn.ubuntu.com/4360-4/Third Party Advisory

Analysis#


Affected Component
Analysis
json-c
Exploitable

Vulnerability Ratings#


7.8
CVSSv31
7.8
CVSSv31
6.8
CVSSv2
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
0.18
Not Affected
buildroot
master
0.18
Not Affected
openwrt
master
0.18-r1
Not Affected
openwrt
openwrt-25.12
0.18-r1
Not Affected
yocto
master
0.18
Not Affected
yocto
scarthgap
0.17
Not Affected