Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fxfc-w6xq-5pp8

Опубликовано: 15 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

A cryptographic vulnerability exists on Node.js on linux in versions of 18.x prior to 18.40.0 which allowed a default path for openssl.cnf that might be accessible under some circumstances to a non-admin user instead of /etc/ssl as was the case in versions prior to the upgrade to OpenSSL 3.

A cryptographic vulnerability exists on Node.js on linux in versions of 18.x prior to 18.40.0 which allowed a default path for openssl.cnf that might be accessible under some circumstances to a non-admin user instead of /etc/ssl as was the case in versions prior to the upgrade to OpenSSL 3.

EPSS

Процентиль: 61%
0.0042
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-326
CWE-427

Связанные уязвимости

CVSS3: 5.3
ubuntu
почти 3 года назад

A cryptographic vulnerability exists on Node.js on linux in versions of 18.x prior to 18.40.0 which allowed a default path for openssl.cnf that might be accessible under some circumstances to a non-admin user instead of /etc/ssl as was the case in versions prior to the upgrade to OpenSSL 3.

CVSS3: 5.3
redhat
почти 3 года назад

A cryptographic vulnerability exists on Node.js on linux in versions of 18.x prior to 18.40.0 which allowed a default path for openssl.cnf that might be accessible under some circumstances to a non-admin user instead of /etc/ssl as was the case in versions prior to the upgrade to OpenSSL 3.

CVSS3: 5.3
nvd
почти 3 года назад

A cryptographic vulnerability exists on Node.js on linux in versions of 18.x prior to 18.40.0 which allowed a default path for openssl.cnf that might be accessible under some circumstances to a non-admin user instead of /etc/ssl as was the case in versions prior to the upgrade to OpenSSL 3.

CVSS3: 5.3
debian
почти 3 года назад

A cryptographic vulnerability exists on Node.js on linux in versions o ...

oracle-oval
больше 2 лет назад

ELSA-2022-9955: GraalVM Security update (IMPORTANT)

EPSS

Процентиль: 61%
0.0042
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-326
CWE-427