jq Project jq 1.5

CPE Details

jq Project jq 1.5
1.5
2016-08-03
11h46 +00:00
2016-08-03
11h46 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:jq_project:jq:1.5:*:*:*:*:*:*:*

Informations

Vendor

jq_project

Product

jq

Version

1.5

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2015-8863 2016-05-06 15h00 +00:00 Off-by-one error in the tokenadd function in jv_parse.c in jq allows remote attackers to cause a denial of service (crash) via a long JSON-encoded number, which triggers a heap-based buffer overflow.
9.8
Critique
CVE-2016-4074 2016-05-06 15h00 +00:00 The jv_dump_term function in jq 1.5 allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted JSON file. This issue has been fixed in jq 1.6_rc1-r0.
7.5
Haute