jq: two vulnerabilities
| Package(s): | jq | CVE #(s): | CVE-2015-8863 CVE-2016-4074 | ||||||||||||||||||||||||||||
| Created: | May 4, 2016 | Updated: | December 8, 2016 | ||||||||||||||||||||||||||||
| Description: | From the openSUSE bug report:
CVE-2015-8863: heap buffer overflow in tokenadd() function http://seclists.org/oss-sec/2016/q2/134 CVE-2016-4074: stack exhaustion using jv_dump_term() function http://seclists.org/oss-sec/2016/q2/140 | ||||||||||||||||||||||||||||||
| Alerts: |
| ||||||||||||||||||||||||||||||