CVE-2021-46462

njs through 0.7.1, used in NGINX, was discovered to contain a segmentation violation via njs_object_set_prototype in /src/njs_object.c.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:f5:njs:*:*:*:*:*:*:*:*

History

24 Mar 2022, 14:33

Type Values Removed Values Added
References (CONFIRM) https://security.netapp.com/advisory/ntap-20220303-0007/ - (CONFIRM) https://security.netapp.com/advisory/ntap-20220303-0007/ - Third Party Advisory
References (MISC) https://github.com/nginx/njs/issues/449 - Exploit, Third Party Advisory (MISC) https://github.com/nginx/njs/issues/449 - Exploit, Issue Tracking, Patch, Third Party Advisory
First Time F5 njs
F5
CPE cpe:2.3:a:nginx:njs:*:*:*:*:*:*:*:* cpe:2.3:a:f5:njs:*:*:*:*:*:*:*:*

03 Mar 2022, 11:15

Type Values Removed Values Added
References
  • (CONFIRM) https://security.netapp.com/advisory/ntap-20220303-0007/ -

22 Feb 2022, 20:11

Type Values Removed Values Added
References (MISC) https://github.com/nginx/njs/commit/39e8fa1b7db1680654527f8fa0e9ee93b334ecba - (MISC) https://github.com/nginx/njs/commit/39e8fa1b7db1680654527f8fa0e9ee93b334ecba - Patch, Vendor Advisory
References (MISC) https://github.com/nginx/njs/issues/449 - (MISC) https://github.com/nginx/njs/issues/449 - Exploit, Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 7.5
CWE NVD-CWE-noinfo
First Time Nginx
Nginx njs
CPE cpe:2.3:a:nginx:njs:*:*:*:*:*:*:*:*

14 Feb 2022, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-02-14 22:15

Updated : 2023-12-10 14:22


NVD link : CVE-2021-46462

Mitre link : CVE-2021-46462

CVE.ORG link : CVE-2021-46462


JSON object : View

Products Affected

f5

  • njs