High severity7.5NVD Advisory· Published Mar 3, 2020· Updated Jun 17, 2026
CVE-2020-1893
CVE-2020-1893
Description
Insufficient boundary checks when decoding JSON in TryParse reads out of bounds memory, potentially leading to DOS. This issue affects HHVM 4.45.0, 4.44.0, 4.43.0, 4.42.0, 4.41.0, 4.40.0, 4.39.0, versions between 4.33.0 and 4.38.0 (inclusive), versions between 4.9.0 and 4.32.0 (inclusive), and versions prior to 4.8.7.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
10cpe:2.3:a:facebook:hhvm:*:*:*:*:*:*:*:*+ 8 more
- cpe:2.3:a:facebook:hhvm:*:*:*:*:*:*:*:*range: <4.8.7
- cpe:2.3:a:facebook:hhvm:4.39.0:*:*:*:*:*:*:*
- cpe:2.3:a:facebook:hhvm:4.40.0:*:*:*:*:*:*:*
- cpe:2.3:a:facebook:hhvm:4.41.0:*:*:*:*:*:*:*
- cpe:2.3:a:facebook:hhvm:4.42.0:*:*:*:*:*:*:*
- cpe:2.3:a:facebook:hhvm:4.43.0:*:*:*:*:*:*:*
- cpe:2.3:a:facebook:hhvm:4.44.0:*:*:*:*:*:*:*
- cpe:2.3:a:facebook:hhvm:4.45.0:*:*:*:*:*:*:*
- (no CPE)range: 4.45.1
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.