vulnerability

Ubuntu: USN-7973-1 (CVE-2023-53154): cJSON vulnerabilities

Severity
2
CVSS
(AV:L/AC:M/Au:N/C:N/I:N/A:P)
Published
May 23, 2025
Added
Jan 27, 2026
Modified
Jan 28, 2026

Description

parse_string in cJSON before 1.7.18 has a heap-based buffer over-read via {"1":1, with no trailing newline if cJSON_ParseWithLength is called.

Solution

ubuntu-pro-upgrade-libcjson1
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.