An issue was discovered in json-c from 20200420 (post 0.14 unreleased code) through 0.15-20200726. A stack-buffer-overflow exists in the auxiliary sample program json_parse which is located in the function parseit.
{ "binaries": [ { "binary_name": "libjson-c-dev", "binary_version": "0.15-3~ubuntu1.22.04.2" }, { "binary_name": "libjson-c5", "binary_version": "0.15-3~ubuntu1.22.04.2" } ], "availability": "No subscription required" }