Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
jq --rawfile invalid-state reuse after String too long causes heap-buffer-overflow
Vulnerability Description
jq is a command-line JSON processor. Prior to 1.8.2,` jq --rawfile` can turn a handled oversized-string error into invalid-state reuse and a real heap out-of-bounds write in assertion-disabled builds. When jv_load_file(raw=1) reads an attacker-controlled file, it repeatedly appends file chunks to the same jv string accumulator. Once jv_string_append_buf() returns jv_invalid_with_msg("String too long"), the raw-file loop does not stop. If the file contains at least one more byte, the next loop iteration appends a new chunk to an object that is already invalid. With assertions enabled this aborts in jvp_string_ptr(). With assertions disabled, the invalid object is interpreted as a string object and ASan reports heap-buffer-overflow. This vulnerability is fixed in 1.8.2.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H
Vulnerability Type
跨界内存写
Vulnerability Title
jqlang jq 缓冲区错误漏洞
Vulnerability Description
jqlang jq是jqlang团队开源的一个轻量级且灵活的命令行 JSON 处理器。 jqlang jq 1.8.2之前版本存在缓冲区错误漏洞,该漏洞源于处理超大字符串错误时,可能导致无效状态重用和基于堆的越界写入。
CVSS Information
N/A
Vulnerability Type
N/A