Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-24346

EPSS 0.17% · P38
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2020-24346

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
njs through 0.4.3, used in NGINX, has a use-after-free in njs_json_parse_iterator_call in njs_json.c.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
NGINX njs 资源管理错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
NGINX是美国NGINX公司的一款轻量级Web服务器/反向代理服务器及电子邮件(IMAP/POP3)代理服务器。njs是其中的一个支持扩展NGINX功能的脚本语言组件。 njs 0.4.3及之前版本(使用在NGINX)中的njs_json.c文件的njs_json_parse_iterator_call存在资源管理错误漏洞。该漏洞源于网络系统或产品对系统资源(如内存、磁盘空间、文件等)的管理不当。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2020-24346

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2020-24346

登录查看更多情报信息。

Same Patch Batch · n/a · 2020-08-13 · 97 CVEs total

CVE-2020-8708Intel Server Board、Server System和Compute Module 授权问题漏洞
CVE-2020-8707Intel Server Board、Server System和Compute Module 缓冲区错误漏洞
CVE-2020-8721Intel Server Board、Server System和Compute Module 输入验证错误漏洞
CVE-2020-8718Intel Server Board、Server System和Compute Module 缓冲区错误漏洞
CVE-2020-8722Intel Server Board、Server System和Compute Module 安全漏洞
CVE-2020-8732Intel Server Board、Server System和Compute Module 缓冲区错误漏洞
CVE-2020-8709Intel Server Board、Server System和Compute Module 授权问题漏洞
CVE-2020-8723Intel Server Board、Server System和Compute Module 跨站脚本漏洞
CVE-2020-8712Intel Server Board、Server System和Compute Module 缓冲区错误漏洞
CVE-2020-8730Intel Server Board、Server System和Compute Module 缓冲区错误漏洞
CVE-2020-8731Intel Server Board、Server System和Compute Module 安全漏洞
CVE-2020-8733Intel Server Board M10JNP2SB 缓冲区错误漏洞
CVE-2020-8736Intel Computing Improvement Program 安全漏洞
CVE-2020-8742Intel NUCs 输入验证错误漏洞
CVE-2020-8743Intel Mailbox Interface 安全漏洞
CVE-2020-8763Intel RealSense D400 Series Universal 安全漏洞
CVE-2020-12287Intel Distribution of OpenVINO(TM) Toolkit 安全漏洞
CVE-2020-17538Artifex Software Ghostscript 缓冲区错误漏洞
CVE-2020-16310Artifex Software Ghostscript 数字错误漏洞
CVE-2020-16309Artifex Software Ghostscript 缓冲区错误漏洞

Showing top 20 of 97 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2020-24346

No comments yet


Leave a comment