Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-2596

Опубликовано: 01 авг. 2022
Источник: redhat
CVSS3: 5.9
EPSS Низкий

Описание

Inefficient Regular Expression Complexity in GitHub repository node-fetch/node-fetch prior to 3.2.10.

A flaw was found in the node-fetch package. Affected 3.x versions of the node-fetch package are vulnerable to denial of service attacks, affecting system availability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Migration Toolkit for Containersrhmtc/openshift-migration-ui-rhel8Not affected
Migration Toolkit for Virtualizationmigration-toolkit-virtualization/mtv-ui-rhel8Not affected
.NET 6.0 on Red Hat Enterprise Linuxrh-dotnet60-dotnetNot affected
OpenShift Developer Tools and ServicesodoNot affected
OpenShift Service Mesh 2openshift-service-mesh/kiali-rhel8Not affected
OpenShift Service Mesh 2.0servicemesh-grafanaNot affected
OpenShift Service Mesh 2.0servicemesh-prometheusNot affected
OpenShift Service Mesh 2.1openshift-service-mesh/kiali-rhel8Not affected
OpenShift Service Mesh 2.1servicemesh-grafanaNot affected
OpenShift Service Mesh 2.1servicemesh-prometheusNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-400
https://bugzilla.redhat.com/show_bug.cgi?id=2113943node-fetch: Denial of Service in GitHub repository node-fetch

EPSS

Процентиль: 45%
0.00225
Низкий

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.9
ubuntu
больше 3 лет назад

Inefficient Regular Expression Complexity in GitHub repository node-fetch/node-fetch prior to 3.2.10.

CVSS3: 5.9
nvd
больше 3 лет назад

Inefficient Regular Expression Complexity in GitHub repository node-fetch/node-fetch prior to 3.2.10.

CVSS3: 5.9
debian
больше 3 лет назад

Inefficient Regular Expression Complexity in GitHub repository node-fe ...

CVSS3: 5.9
github
больше 3 лет назад

node-fetch Inefficient Regular Expression Complexity

EPSS

Процентиль: 45%
0.00225
Низкий

5.9 Medium

CVSS3