CVE-2022-28285 - log back

CVE-2022-28285 edited at 14 May 2022 20:15:43
Severity
- Unknown
+ Medium
Description
+ When generating the assembly code for MLoadTypedArrayElementHole, an incorrect AliasSet was used. In conjunction with another vulnerability this could have been used for an out of bounds memory read.
References
+ https://bugzilla.mozilla.org/show_bug.cgi?id=1756957
Notes
CVE-2022-28285 created at 14 May 2022 20:06:07