CVE Details
Basic Information
| Title |
CVE-2024-23337 |
| Type |
cve |
| Published |
2025-05-21T15:16:03 |
| Last Seen |
2025-05-21T15:29:45 |
CVSS Information
| Base Score |
4.3 (MEDIUM) |
| Attack Vector |
NETWORK |
| Attack Complexity |
LOW |
| Privileges Required |
NONE |
| User Interaction |
REQUIRED |
| Scope |
UNCHANGED |
| Confidentiality Impact |
NONE |
| Integrity Impact |
NONE |
| Availability Impact |
LOW |
AI Analysis
| AI Description |
jq, a command-line JSON processor, has an integer overflow vulnerability when using an index of 2147483647. This affects versions up to 1.7.1. |
| AI Severity |
Medium |
| Vendor |
jq Community |
| Product |
jq |
| Affected Version |
Up to 1.7.1 |
Additional Information
| CVE List |
CVE-2024-23337 |
| CWE List |
CWE-190 |
| Bulletin Family |
cve |
Description
jq is a command-line JSON processor. In versions up to and including 1.7.1, an integer overflow arises when assigning value using an index of 2147483647, the signed integer limit….
CVSS Score Summary
Base Score: %!f(string=#) (MEDIUM)
View Full CVE Details