Memory leak in cJSON - CVE-2018-1000215
Published: April 15, 2024
Vulnerability identifier: #VU88522
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-1000215
CWE-ID: CWE-401
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to perform DoS attack on the target system.
The vulnerability exists due memory leak when printing data. A remote attacker can force the application to leak memory and perform denial of service attack.
Affected software
cJSON
Juniper Cloud Native Router
Junos cRPD
Juniper Cloud Native Router
Junos cRPD
How to mitigate CVE-2018-1000215
Install updates from vendor's website.
cJSON - update to 1.7.7
Juniper Cloud Native Router - update to 23.4R1
Junos cRPD - update to 23.4R1
Juniper Cloud Native Router - update to 23.4R1
Junos cRPD - update to 23.4R1