Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-25858

Опубликовано: 15 июл. 2022
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 5.3

Описание

The package terser before 4.8.1, from 5.0.0 and before 5.14.2 are vulnerable to Regular Expression Denial of Service (ReDoS) due to insecure usage of regular expressions.

РелизСтатусПримечание
bionic

not-affected

code not compiled
devel

not-affected

code not present
esm-apps/noble

not-affected

code not present
esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal was not-affected [code not present]
focal

not-affected

code not present
impish

not-affected

code not present
jammy

not-affected

code not present
kinetic

not-affected

code not present
lunar

not-affected

code not present

Показывать по

РелизСтатусПримечание
bionic

DNE

devel

needs-triage

esm-apps/focal

needs-triage

esm-apps/jammy

needs-triage

esm-apps/noble

needs-triage

focal

ignored

end of standard support, was needs-triage
impish

ignored

end of life
jammy

needs-triage

kinetic

ignored

end of life, was needs-triage
lunar

ignored

end of life, was needs-triage

Показывать по

РелизСтатусПримечание
bionic

DNE

devel

needs-triage

esm-apps/jammy

needs-triage

esm-apps/noble

needs-triage

esm-infra/focal

DNE

focal

DNE

impish

DNE

jammy

needs-triage

kinetic

ignored

end of life, was needs-triage
lunar

ignored

end of life, was needs-triage

Показывать по

EPSS

Процентиль: 83%
0.01993
Низкий

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
почти 3 года назад

The package terser before 4.8.1, from 5.0.0 and before 5.14.2 are vulnerable to Regular Expression Denial of Service (ReDoS) due to insecure usage of regular expressions.

CVSS3: 5.3
nvd
почти 3 года назад

The package terser before 4.8.1, from 5.0.0 and before 5.14.2 are vulnerable to Regular Expression Denial of Service (ReDoS) due to insecure usage of regular expressions.

CVSS3: 7.5
msrc
около 1 месяца назад

Описание отсутствует

CVSS3: 5.3
debian
почти 3 года назад

The package terser before 4.8.1, from 5.0.0 and before 5.14.2 are vuln ...

CVSS3: 7.5
github
почти 3 года назад

Terser insecure use of regular expressions leads to ReDoS

EPSS

Процентиль: 83%
0.01993
Низкий

5.3 Medium

CVSS3

Уязвимость CVE-2022-25858