Vulnerability Description
Moddable commit before 135aa9a4a6a9b49b60aa730ebc3bcc6247d75c45 was discovered to contain an out-of-bounds read via the function fxUint8Getter at /moddable/xs/sources/xsDataView.c.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Moddable | Moddable | <= os220330 |
Related Weaknesses (CWE)
References
- https://github.com/Moddable-OpenSource/moddable/commit/135aa9a4a6a9b49b60aa730ebPatchThird Party Advisory
- https://github.com/Moddable-OpenSource/moddable/issues/896ExploitThird Party Advisory
- https://github.com/Moddable-OpenSource/moddable/commit/135aa9a4a6a9b49b60aa730ebPatchThird Party Advisory
- https://github.com/Moddable-OpenSource/moddable/issues/896ExploitThird Party Advisory
FAQ
What is CVE-2022-29368?
CVE-2022-29368 is a vulnerability with a CVSS score of 7.1 (HIGH). Moddable commit before 135aa9a4a6a9b49b60aa730ebc3bcc6247d75c45 was discovered to contain an out-of-bounds read via the function fxUint8Getter at /moddable/xs/sources/xsDataView.c.
How severe is CVE-2022-29368?
CVE-2022-29368 has been rated HIGH with a CVSS base score of 7.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-29368?
Check the references section above for vendor advisories and patch information. Affected products include: Moddable Moddable.