Количество 27
Количество 27
GHSA-prhj-8562-p8gj
A vulnerability in Node.js HTTP servers allows an attacker to send a specially crafted HTTP request with chunked encoding, leading to resource exhaustion and denial of service (DoS). The server reads an unbounded number of bytes from a single connection, exploiting the lack of limitations on chunk extension bytes. The issue can cause CPU and network bandwidth exhaustion, bypassing standard safeguards like timeouts and body size limits.
CVE-2024-22019
A vulnerability in Node.js HTTP servers allows an attacker to send a specially crafted HTTP request with chunked encoding, leading to resource exhaustion and denial of service (DoS). The server reads an unbounded number of bytes from a single connection, exploiting the lack of limitations on chunk extension bytes. The issue can cause CPU and network bandwidth exhaustion, bypassing standard safeguards like timeouts and body size limits.
CVE-2024-22019
A vulnerability in Node.js HTTP servers allows an attacker to send a specially crafted HTTP request with chunked encoding, leading to resource exhaustion and denial of service (DoS). The server reads an unbounded number of bytes from a single connection, exploiting the lack of limitations on chunk extension bytes. The issue can cause CPU and network bandwidth exhaustion, bypassing standard safeguards like timeouts and body size limits.
CVE-2024-22019
A vulnerability in Node.js HTTP servers allows an attacker to send a specially crafted HTTP request with chunked encoding, leading to resource exhaustion and denial of service (DoS). The server reads an unbounded number of bytes from a single connection, exploiting the lack of limitations on chunk extension bytes. The issue can cause CPU and network bandwidth exhaustion, bypassing standard safeguards like timeouts and body size limits.
CVE-2024-22019
CVE-2024-22019
A vulnerability in Node.js HTTP servers allows an attacker to send a s ...
ELSA-2024-1438
ELSA-2024-1438: nodejs security update (IMPORTANT)
BDU:2024-02798
Уязвимость HTTP-сервера программной платформы Node.js, позволяющая нарушителю обойти ограничения безопасности и вызвать отказ в обслуживании
ROS-20240808-03
Уязвимость nodejs
RLSA-2024:1444
Important: nodejs:16 security update
ELSA-2024-1444
ELSA-2024-1444: nodejs:16 security update (IMPORTANT)
RLSA-2024:1510
Important: nodejs:18 security update
RLSA-2024:1503
Important: nodejs:18 security update
ELSA-2024-1510
ELSA-2024-1510: nodejs:18 security update (IMPORTANT)
ELSA-2024-1503
ELSA-2024-1503: nodejs:18 security update (IMPORTANT)
SUSE-SU-2024:0733-1
Security update for nodejs12
SUSE-SU-2024:0732-1
Security update for nodejs14
SUSE-SU-2024:0731-1
Security update for nodejs16
SUSE-SU-2024:0729-1
Security update for nodejs16
SUSE-SU-2024:0728-1
Security update for nodejs16
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-prhj-8562-p8gj A vulnerability in Node.js HTTP servers allows an attacker to send a specially crafted HTTP request with chunked encoding, leading to resource exhaustion and denial of service (DoS). The server reads an unbounded number of bytes from a single connection, exploiting the lack of limitations on chunk extension bytes. The issue can cause CPU and network bandwidth exhaustion, bypassing standard safeguards like timeouts and body size limits. | CVSS3: 7.5 | 0% Низкий | почти 2 года назад | |
CVE-2024-22019 A vulnerability in Node.js HTTP servers allows an attacker to send a specially crafted HTTP request with chunked encoding, leading to resource exhaustion and denial of service (DoS). The server reads an unbounded number of bytes from a single connection, exploiting the lack of limitations on chunk extension bytes. The issue can cause CPU and network bandwidth exhaustion, bypassing standard safeguards like timeouts and body size limits. | CVSS3: 7.5 | 0% Низкий | почти 2 года назад | |
CVE-2024-22019 A vulnerability in Node.js HTTP servers allows an attacker to send a specially crafted HTTP request with chunked encoding, leading to resource exhaustion and denial of service (DoS). The server reads an unbounded number of bytes from a single connection, exploiting the lack of limitations on chunk extension bytes. The issue can cause CPU and network bandwidth exhaustion, bypassing standard safeguards like timeouts and body size limits. | CVSS3: 7.5 | 0% Низкий | почти 2 года назад | |
CVE-2024-22019 A vulnerability in Node.js HTTP servers allows an attacker to send a specially crafted HTTP request with chunked encoding, leading to resource exhaustion and denial of service (DoS). The server reads an unbounded number of bytes from a single connection, exploiting the lack of limitations on chunk extension bytes. The issue can cause CPU and network bandwidth exhaustion, bypassing standard safeguards like timeouts and body size limits. | CVSS3: 7.5 | 0% Низкий | почти 2 года назад | |
CVSS3: 7.5 | 0% Низкий | почти 2 года назад | ||
CVE-2024-22019 A vulnerability in Node.js HTTP servers allows an attacker to send a s ... | CVSS3: 7.5 | 0% Низкий | почти 2 года назад | |
ELSA-2024-1438 ELSA-2024-1438: nodejs security update (IMPORTANT) | больше 1 года назад | |||
BDU:2024-02798 Уязвимость HTTP-сервера программной платформы Node.js, позволяющая нарушителю обойти ограничения безопасности и вызвать отказ в обслуживании | CVSS3: 7.5 | 0% Низкий | около 2 лет назад | |
ROS-20240808-03 Уязвимость nodejs | CVSS3: 7.5 | 0% Низкий | больше 1 года назад | |
RLSA-2024:1444 Important: nodejs:16 security update | больше 1 года назад | |||
ELSA-2024-1444 ELSA-2024-1444: nodejs:16 security update (IMPORTANT) | больше 1 года назад | |||
RLSA-2024:1510 Important: nodejs:18 security update | больше 1 года назад | |||
RLSA-2024:1503 Important: nodejs:18 security update | больше 1 года назад | |||
ELSA-2024-1510 ELSA-2024-1510: nodejs:18 security update (IMPORTANT) | больше 1 года назад | |||
ELSA-2024-1503 ELSA-2024-1503: nodejs:18 security update (IMPORTANT) | больше 1 года назад | |||
SUSE-SU-2024:0733-1 Security update for nodejs12 | почти 2 года назад | |||
SUSE-SU-2024:0732-1 Security update for nodejs14 | почти 2 года назад | |||
SUSE-SU-2024:0731-1 Security update for nodejs16 | почти 2 года назад | |||
SUSE-SU-2024:0729-1 Security update for nodejs16 | почти 2 года назад | |||
SUSE-SU-2024:0728-1 Security update for nodejs16 | почти 2 года назад |
Уязвимостей на страницу