CVE-2025-46688 - CERT CVE
ID CVE-2025-46688
Sažetak quickjs-ng through 0.9.0 has an incorrect size calculation in JS_ReadBigInt for a BigInt, leading to a heap-based buffer overflow. QuickJS before 2025-04-26 is also affected.
Reference
CVSS
Base: 5.6
Impact: 3.7
Exploitability:1.4
Pristup
VektorSloženostAutentikacija
LOCAL HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
LOW LOW LOW
CVSS vektor CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:L
Zadnje važnije ažuriranje 29-04-2025 - 13:52
Objavljeno 27-04-2025 - 20:15