High severity7.5NVD Advisory· Published Mar 3, 2020· Updated Jun 17, 2026
CVE-2020-1888
CVE-2020-1888
Description
Insufficient boundary checks when decoding JSON in handleBackslash reads out of bounds memory, potentially leading to DOS. This issue affects HHVM 4.45.0, 4.44.0, 4.43.0, 4.42.0, 4.41.0, 4.40.0, 4.39.0, versions between 4.33.0 and 4.38.0 (inclusive), versions between 4.9.0 and 4.32.0 (inclusive), and versions prior to 4.8.7.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
10cpe:2.3:a:facebook:hhvm:*:*:*:*:*:*:*:*+ 8 more
- cpe:2.3:a:facebook:hhvm:*:*:*:*:*:*:*:*range: <4.8.7
- cpe:2.3:a:facebook:hhvm:4.39.0:*:*:*:*:*:*:*
- cpe:2.3:a:facebook:hhvm:4.40.0:*:*:*:*:*:*:*
- cpe:2.3:a:facebook:hhvm:4.41.0:*:*:*:*:*:*:*
- cpe:2.3:a:facebook:hhvm:4.42.0:*:*:*:*:*:*:*
- cpe:2.3:a:facebook:hhvm:4.43.0:*:*:*:*:*:*:*
- cpe:2.3:a:facebook:hhvm:4.44.0:*:*:*:*:*:*:*
- cpe:2.3:a:facebook:hhvm:4.45.0:*:*:*:*:*:*:*
- (no CPE)range: 4.45.1
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.