Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-1000236

Опубликовано: 19 нояб. 2019
Источник: ubuntu
Приоритет: negligible
EPSS Низкий
CVSS2: 3.5
CVSS3: 4.4

Описание

Node-cookie-signature before 1.0.6 is affected by a timing attack due to the type of comparison used.

РелизСтатусПримечание
artful

ignored

end of life
bionic

ignored

end of standard support, was needed
cosmic

ignored

end of life
devel

not-affected

1.1.0-2
disco

not-affected

1.1.0-1
eoan

not-affected

1.1.0-2
esm-apps-legacy/xenial

needed

esm-apps/bionic

needed

esm-apps/focal

not-affected

1.1.0-2
esm-apps/jammy

not-affected

1.1.0-2

Показывать по

EPSS

Процентиль: 57%
0.00896
Низкий

3.5 Low

CVSS2

4.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.4
redhat
около 12 лет назад

Node-cookie-signature before 1.0.6 is affected by a timing attack due to the type of comparison used.

CVSS3: 4.4
nvd
больше 6 лет назад

Node-cookie-signature before 1.0.6 is affected by a timing attack due to the type of comparison used.

CVSS3: 4.4
debian
больше 6 лет назад

Node-cookie-signature before 1.0.6 is affected by a timing attack due ...

CVSS3: 4.4
github
больше 6 лет назад

cookie-signature Timing Attack

EPSS

Процентиль: 57%
0.00896
Низкий

3.5 Low

CVSS2

4.4 Medium

CVSS3