Logo
vulnerabilityCVE-2021-32292
Name
CVE-2021-32292
Source
NVD ( link)Debian ( link)
Description
An issue was discovered in json-c from 20200420 (post 0.14 unreleased code) through 0.15-20200726. A stack-buffer-overflow exists in the auxiliary sample program json_parse which is located in the function parseit.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
json-c
Patched

Vulnerability Ratings#


9.8
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
0.18
Not Affected
buildroot
master
0.18
Not Affected
openwrt
master
0.18-r1
Not Affected
openwrt
openwrt-25.12
0.18-r1
Not Affected
yocto
master
0.18
Not Affected
yocto
scarthgap
0.17
Not Affected

Resolved with patches#


json-c (yocto:kirkstone)

#
Title
Author
Resolve
1
Fix read past end of buffer
Marc <34656315+MarcT512@users.noreply.github.com>
CVE-2021-32292