CVE-2023-51074

Source
https://nvd.nist.gov/vuln/detail/CVE-2023-51074
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-51074.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-51074
Aliases
Related
Published
2023-12-27T21:15:08Z
Modified
2024-09-18T03:24:19.386542Z
Severity
  • 5.3 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L CVSS Calculator
Summary
[none]
Details

json-path v2.8.0 was discovered to contain a stack overflow via the Criteria.parse() method.

References

Affected packages

Debian:11 / jayway-jsonpath

Package

Name
jayway-jsonpath
Purl
pkg:deb/debian/jayway-jsonpath?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*

2.0.0-5

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / jayway-jsonpath

Package

Name
jayway-jsonpath
Purl
pkg:deb/debian/jayway-jsonpath?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*

2.0.0-5

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / jayway-jsonpath

Package

Name
jayway-jsonpath
Purl
pkg:deb/debian/jayway-jsonpath?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*

2.0.0-5

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Git / github.com/json-path/jsonpath

Affected ranges

Type
GIT
Repo
https://github.com/json-path/jsonpath
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected

Affected versions

2.*

2.2.0

json-path-0.*

json-path-0.9.0
json-path-0.9.1

json-path-1.*

json-path-1.0.0
json-path-1.1.0
json-path-1.2.0

json-path-2.*

json-path-2.0.0
json-path-2.1.0
json-path-2.2.0
json-path-2.3.0
json-path-2.4.0
json-path-2.5.0
json-path-2.6.0
json-path-2.7.0
json-path-2.8.0

json-path-parent-0.*

json-path-parent-0.5.0
json-path-parent-0.5.1
json-path-parent-0.5.2
json-path-parent-0.5.3
json-path-parent-0.5.4
json-path-parent-0.5.5
json-path-parent-0.5.6
json-path-parent-0.8.0
json-path-parent-0.8.1