Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-3765

Опубликовано: 02 нояб. 2021
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

validator.js is vulnerable to Inefficient Regular Expression Complexity

A vulnerability was found in the validator package. Affected versions of this package are vulnerable to Regular expression denial of service (ReDoS) attacks, affecting system availability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Migration Toolkit for Virtualizationmigration-toolkit-virtualization/mtv-ui-rhel8Fix deferred
Red Hat Advanced Cluster Management for Kubernetes 2rhacm2/console-rhel8Not affected
Red Hat Advanced Cluster Management for Kubernetes 2rhacm2/grc-ui-rhel8Will not fix
Red Hat Decision Manager 7validatorOut of support scope
Red Hat Enterprise Linux 8pcsNot affected
Red Hat OpenShift Container Platform 4openshift4/ose-consoleWill not fix
Red Hat Openshift Container Storage 4ocs4/mcg-core-rhel8Affected
Red Hat Openshift Data Foundation 4noobaa-core-containerAffected
Red Hat Openshift Data Foundation 4odf4/odf-console-rhel9Affected
Red Hat Openshift Data Foundation 4odf4/odf-multicluster-console-rhel8Affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-1333
https://bugzilla.redhat.com/show_bug.cgi?id=2126299validator: Inefficient Regular Expression Complexity in Validator.js

EPSS

Процентиль: 13%
0.00044
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 4 лет назад

validator.js is vulnerable to Inefficient Regular Expression Complexity

CVSS3: 7.5
nvd
больше 4 лет назад

validator.js is vulnerable to Inefficient Regular Expression Complexity

CVSS3: 7.5
debian
больше 4 лет назад

validator.js is vulnerable to Inefficient Regular Expression Complexit ...

CVSS3: 5.3
github
больше 4 лет назад

Inefficient Regular Expression Complexity in validator.js

EPSS

Процентиль: 13%
0.00044
Низкий

7.5 High

CVSS3