CVE-2023-50268

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
13/12/2023
Last modified:
19/12/2023

Description

jq is a command-line JSON processor. Version 1.7 is vulnerable to stack-based buffer overflow in builds using decNumber. Version 1.7.1 contains a patch for this issue.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:jqlang:jq:1.7:*:*:*:*:*:*:*