An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjsopjson_parse function in the msj.c file.
{
"binaries": [
{
"binary_version": "3.0.2-2.1build2",
"binary_name": "libopendsp-dev"
},
{
"binary_version": "3.0.2-2.1build2",
"binary_name": "libopendsp3t64"
},
{
"binary_version": "3.0.2-2.1build2",
"binary_name": "libopenvlbi-dev"
},
{
"binary_version": "3.0.2-2.1build2",
"binary_name": "libopenvlbi3t64"
},
{
"binary_version": "3.0.2-2.1build2",
"binary_name": "openvlbi"
},
{
"binary_version": "3.0.2-2.1build2",
"binary_name": "openvlbi-bin"
},
{
"binary_version": "3.0.2-2.1build2",
"binary_name": "openvlbi-data"
}
]
}
{
"binaries": [
{
"binary_version": "3.0.2-3",
"binary_name": "libopendsp-dev"
},
{
"binary_version": "3.0.2-3",
"binary_name": "libopendsp3t64"
},
{
"binary_version": "3.0.2-3",
"binary_name": "libopenvlbi-dev"
},
{
"binary_version": "3.0.2-3",
"binary_name": "libopenvlbi3t64"
},
{
"binary_version": "3.0.2-3",
"binary_name": "openvlbi"
},
{
"binary_version": "3.0.2-3",
"binary_name": "openvlbi-bin"
},
{
"binary_version": "3.0.2-3",
"binary_name": "openvlbi-data"
}
]
}