Description
JSON::SIMD before version 1.07 and earlier for Perl has an integer buffer overflow causing a segfault when parsing crafted JSON, enabling denial-of-service attacks or other unspecified impact.
Problem types
CWE-122 Heap-based Buffer Overflow
Product status
Any version before 1.07
Credits
Michael Hudak of rasotec
References
metacpan.org/release/PJUHASZ/JSON-SIMD-1.06/source/SIMD.xs
metacpan.org/release/PJUHASZ/JSON-SIMD-1.07/changes
github.com/...9a87de7331c9fa5198cae404a83b17649cf7b918.patch