CVE-2022-27810
7.5HIGHIt was possible to trigger an infinite recursion condition in the error handler when Hermes executed specific maliciously formed JavaScript. This condition was only possible to trigger in dev-mode (wh
게시됨: 10/6/2022업데이트됨: 11/21/2024
설명
It was possible to trigger an infinite recursion condition in the error handler when Hermes executed specific maliciously formed JavaScript. This condition was only possible to trigger in dev-mode (when asserts were enabled). This issue affects Hermes versions prior to v0.12.0.
AI 분석AI 기반
영향받는 제품
facebookhermes
참조
- https://www.facebook.com/security/advisories/cve-2022-27810Third Party Advisory
- https://www.facebook.com/security/advisories/cve-2022-27810Third Party Advisory