CVE-2023-53154

CVE Details

Basic Information

Title CVE-2023-53154
Type cve
Published 2025-05-23T16:15:22
Last Seen 2025-05-23T16:29:36

CVSS Information

Base Score 2.9 (LOW)
Attack Vector LOCAL
Attack Complexity HIGH
Privileges Required NONE
User Interaction NONE
Scope UNCHANGED
Confidentiality Impact NONE
Integrity Impact NONE
Availability Impact LOW

AI Analysis

AI Description A heap-based buffer over-read vulnerability in the parse_string function of cJSON versions before 1.7.18 allows remote attackers to potentially cause a denial of service or information disclosure via crafted JSON input lacking a trailing newline.
AI Severity Low
Vendor cJSON Community
Product cJSON
Affected Version versions before 1.7.18

Additional Information

CVE List CVE-2023-53154
CWE List CWE-125
Bulletin Family cve

Description

parse_string in cJSON before 1.7.18 has a heap-based buffer over-read via {“1”:1, with no trailing newline…

CVSS Score Summary

Base Score: %!f(string=#) (LOW)

View Full CVE Details

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.