Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-35065

Опубликовано: 26 дек. 2022
Источник: debian

Описание

The glob-parent package before 6.0.1 for Node.js allows ReDoS (regular expression denial of service) attacks against the enclosure regular expression.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
node-glob-parentfixed6.0.2+~5.1.1-1package
node-glob-parentno-dsabullseyepackage
node-glob-parentno-dsabusterpackage

Примечания

  • https://github.com/gulpjs/glob-parent/commit/3e9f04a3b4349db7e1962d87c9a7398cda51f339 (v6.0.1)

  • https://github.com/gulpjs/glob-parent/pull/49

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 2 лет назад

The glob-parent package before 6.0.1 for Node.js allows ReDoS (regular expression denial of service) attacks against the enclosure regular expression.

CVSS3: 7.5
redhat
больше 2 лет назад

The glob-parent package before 6.0.1 for Node.js allows ReDoS (regular expression denial of service) attacks against the enclosure regular expression.

CVSS3: 7.5
nvd
больше 2 лет назад

The glob-parent package before 6.0.1 for Node.js allows ReDoS (regular expression denial of service) attacks against the enclosure regular expression.

CVSS3: 7.5
github
почти 3 года назад

glob-parent 6.0.0 vulnerable to Regular Expression Denial of Service

oracle-oval
около 2 лет назад

ELSA-2023-1583: nodejs:18 security, bug fix, and enhancement update (MODERATE)