Description
** DISPUTED ** This record was originally reported by the oss-fuzz project who failed to consider the security context in which JXPath is intended to be used and failed to contact the JXPath maintainers prior to requesting the CVE allocation. The CVE was then allocated by Google in breach of the CNA rules. After review by the JXPath maintainers, the original report was found to be invalid.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-7135 | ** DISPUTED ** This record was originally reported by the oss-fuzz project who failed to consider the security context in which JXPath is intended to be used and failed to contact the JXPath maintainers prior to requesting the CVE allocation. The CVE was then allocated by Google in breach of the CNA rules. After review by the JXPath maintainers, the original report was found to be invalid. |
Github GHSA |
GHSA-mqxp-cjr9-c5jm | JXPath Out-of-bounds Write vulnerability |
References
| Link | Providers |
|---|---|
| https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=47053 |
|
History
No history.
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2024-08-03T12:14:39.660Z
Reserved: 2022-09-07T00:00:00.000Z
Link: CVE-2022-40160
No data.
Status : Modified
Published: 2022-10-06T18:16:50.730
Modified: 2024-11-21T07:20:59.640
Link: CVE-2022-40160
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA