{"id":"BIT-json-c-2021-32292","details":"An issue was discovered in json-c from 20200420 (post 0.14 unreleased code) through 0.15-20200726. A stack-buffer-overflow exists in the auxiliary sample program json_parse which is located in the function parseit.","aliases":["CVE-2021-32292"],"modified":"2024-02-19T10:36:29.170Z","published":"2024-01-31T15:14:57.095Z","database_specific":{"severity":"Critical","cpes":["cpe:2.3:a:json-c_project:json-c:0.15-20200726:*:*:*:*:*:*:*"]},"references":[{"type":"WEB","url":"https://github.com/json-c/json-c/issues/654"},{"type":"WEB","url":"https://security.netapp.com/advisory/ntap-20230929-0010/"},{"type":"WEB","url":"https://www.debian.org/security/2023/dsa-5486"}],"affected":[{"package":{"name":"json-c","ecosystem":"Bitnami","purl":"pkg:bitnami/json-c"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0.15-20200726.0"},{"last_affected":"0.15-20200726.0"}]}],"database_specific":{"source":"https://github.com/bitnami/vulndb/tree/main/data/json-c/BIT-json-c-2021-32292.json"},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}],"schema_version":"1.7.3"}