CVE-2022-27810
7.5HIGHIt was possible to trigger an infinite recursion condition in the error handler when Hermes executed specific maliciously formed JavaScript. This condition was only possible to trigger in dev-mode (wh
Veröffentlicht: 10/6/2022Aktualisiert: 11/21/2024
Beschreibung
It was possible to trigger an infinite recursion condition in the error handler when Hermes executed specific maliciously formed JavaScript. This condition was only possible to trigger in dev-mode (when asserts were enabled). This issue affects Hermes versions prior to v0.12.0.
KI-AnalyseKI-gestützt
Betroffene Produkte
facebookhermes
Referenzen
- https://www.facebook.com/security/advisories/cve-2022-27810Third Party Advisory
- https://www.facebook.com/security/advisories/cve-2022-27810Third Party Advisory