CVE-2023-34867

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Jun 14, 2023
Updated: Jan 3, 2025
CWE ID 617

Summary

CVE-2023-34867 is a newly discovered vulnerability affecting Jerryscript 3.0, specifically commit 05dbbd1. This issue involves an Assertion Failure in the ecma_property_hashmap_create function located in jerry-core/ecma/base/ecma-property-hashmap.c. Successful exploitation may allow attackers to gain unintended control over the affected system, potentially leading to severe consequences, such as data breaches or unauthorized access. It is crucial for users of Jerryscript 3.0 to update to a patched version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share