Back to search
CVE-2024-25713
Published: Feb 11, 2024
Modified: Nov 4, 2025
PUBLISHED
Description
yyjson through 0.8.0 has a double free, leading to remote code execution in some cases, because the pool_free function lacks loop checks. (pool_free is part of the pool series allocator, along with pool_malloc and pool_realloc.)
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
FEDORA-2024-4691d60717
vendor-advisory
FEDORA-2024-ef2e551fab
vendor-advisory
FEDORA-2024-8c48a81cb9
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now