jq Project jq 1.5

CPE Details

jq Project jq 1.5
1.5
2016-08-03
11h46 +00:00
2016-08-03
11h46 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:jq_project:jq:1.5:*:*:*:*:*:*:*

Informations

Vendor

jq_project

Product

jq

Version

1.5

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2015-8863 2016-05-06 15h00 +00:00 Off-by-one error in the tokenadd function in jv_parse.c in jq allows remote attackers to cause a denial of service (crash) via a long JSON-encoded number, which triggers a heap-based buffer overflow.
9.8
Critical
CVE-2016-4074 2016-05-06 15h00 +00:00 The jv_dump_term function in jq 1.5 allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted JSON file. This issue has been fixed in jq 1.6_rc1-r0.
7.5
High