Candidate: CVE-2020-23306 PublicDate: 2021-06-10 23:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-23306 https://github.com/jerryscript-project/jerryscript/issues/3753 Description: There is a stack-overflow at ecma-regexp-object.c:535 in ecma_regexp_match in JerryScript 2.2.0. Ubuntu-Description: Notes: Mitigation: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=989991 Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H [9.8 CRITICAL] Patches_iotjs: upstream: https://github.com/jerryscript-project/jerryscript/pull/3746 upstream_iotjs: released (2.3.0) trusty_iotjs: ignored (out of standard support) trusty/esm_iotjs: DNE xenial_iotjs: ignored (out of standard support) bionic_iotjs: needed focal_iotjs: DNE groovy_iotjs: ignored (reached end-of-life) hirsute_iotjs: ignored (reached end-of-life) impish_iotjs: needed jammy_iotjs: needed devel_iotjs: needed