Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-1000236

Опубликовано: 19 нояб. 2019
Источник: ubuntu
Приоритет: negligible
CVSS2: 3.5
CVSS3: 4.4

Описание

Node-cookie-signature before 1.0.6 is affected by a timing attack due to the type of comparison used.

РелизСтатусПримечание
artful

ignored

end of life
bionic

ignored

end of standard support, was needed
cosmic

ignored

end of life
devel

not-affected

1.1.0-2
disco

not-affected

1.1.0-1
eoan

not-affected

1.1.0-2
esm-apps/bionic

needed

esm-apps/focal

not-affected

1.1.0-2
esm-apps/jammy

not-affected

1.1.0-2
esm-apps/noble

not-affected

1.1.0-2

Показывать по

3.5 Low

CVSS2

4.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.4
redhat
больше 11 лет назад

Node-cookie-signature before 1.0.6 is affected by a timing attack due to the type of comparison used.

CVSS3: 4.4
nvd
около 6 лет назад

Node-cookie-signature before 1.0.6 is affected by a timing attack due to the type of comparison used.

CVSS3: 4.4
debian
около 6 лет назад

Node-cookie-signature before 1.0.6 is affected by a timing attack due ...

CVSS3: 4.4
github
около 6 лет назад

cookie-signature Timing Attack

3.5 Low

CVSS2

4.4 Medium

CVSS3