Описание
Improper Certificate Validation in Node.js 10, 12, and 13 causes the process to abort when sending a crafted X.509 certificate
An encoding error flaw exists in the Node.js code that is used to read a peer certificate in the TLS client authentication. An attacker can use this flaw to crash the process used to handle TLS client authentication.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Quay 3 | nodejs | Not affected | ||
Red Hat Enterprise Linux 8 | nodejs | Fixed | RHSA-2020:0579 | 25.02.2020 |
Red Hat Enterprise Linux 8 | nodejs | Fixed | RHSA-2020:0598 | 25.02.2020 |
Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions | nodejs | Fixed | RHSA-2020:0573 | 24.02.2020 |
Red Hat Software Collections for Red Hat Enterprise Linux 7 | rh-nodejs10-nodejs | Fixed | RHSA-2020:0597 | 25.02.2020 |
Red Hat Software Collections for Red Hat Enterprise Linux 7 | rh-nodejs12-nodejs | Fixed | RHSA-2020:0602 | 25.02.2020 |
Red Hat Software Collections for Red Hat Enterprise Linux 7.5 EUS | rh-nodejs10-nodejs | Fixed | RHSA-2020:0597 | 25.02.2020 |
Red Hat Software Collections for Red Hat Enterprise Linux 7.5 EUS | rh-nodejs12-nodejs | Fixed | RHSA-2020:0602 | 25.02.2020 |
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUS | rh-nodejs10-nodejs | Fixed | RHSA-2020:0597 | 25.02.2020 |
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUS | rh-nodejs12-nodejs | Fixed | RHSA-2020:0602 | 25.02.2020 |
Показывать по
Дополнительная информация
Статус:
5.9 Medium
CVSS3
Связанные уязвимости
Improper Certificate Validation in Node.js 10, 12, and 13 causes the process to abort when sending a crafted X.509 certificate
Improper Certificate Validation in Node.js 10, 12, and 13 causes the process to abort when sending a crafted X.509 certificate
Improper Certificate Validation in Node.js 10, 12, and 13 causes the p ...
Improper Certificate Validation in Node.js 10, 12, and 13 causes the process to abort when sending a crafted X.509 certificate
5.9 Medium
CVSS3