Back to Database
Status published
Critical
CVE-2021-41752
Stack overflow vulnerability in Jerryscript before commit e1ce7dd7271288be8c0c8136eea9107df73a8ce2 on Oct...
Vulnerability Description
Stack overflow vulnerability in Jerryscript before commit e1ce7dd7271288be8c0c8136eea9107df73a8ce2 on Oct 20, 2021 due to an unbounded recursive call to the new opt() function.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-41752
Credits & Attribution
No credits recorded in the NVD database.
More from jerryscript
View All →CVE-2022-32117
Jerryscript v2.4.0 was discovered to contain a stack buffer overflow...
High
7.8
CVE-2022-22901
There is an Assertion in 'context_p->next_scanner_info_p->type == SCANNER_TYPE_FUNCTION' failed at...
Medium
5.5
CVE-2022-22895
Jerryscript 3.0.0 was discovered to contain a heap-buffer-overflow via ecma_utf8_string_to_number_by_radix...
High
7.8
CVE-2022-22894
Jerryscript 3.0.0 was discovered to contain a stack overflow via...
High
7.8
CVE-2022-22893
Jerryscript 3.0.0 was discovered to contain a stack overflow via...
High
7.8
Affected Vendor
jerryscript
View all reports →Affected Software
jerryscript
Vulnerable Versions:
0
Timeline
Official Publish:
April 5th, 2022
Last Modified:
August 4th, 2024
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.