Логотип exploitDog
bind:CVE-2022-25852
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-25852

Количество 2

Количество 2

nvd логотип

CVE-2022-25852

больше 3 лет назад

All versions of package pg-native; all versions of package libpq are vulnerable to Denial of Service (DoS) when the addons attempt to cast the second argument to an array and fail. This happens for every non-array argument passed. **Note:** pg-native is a mere binding to npm's libpq library, which in turn has the addons and bindings to the actual C libpq library. This means that problems found in pg-native may transitively impact npm's libpq.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-j32j-2hxv-rqf7

больше 3 лет назад

pg-native and libpq vulnerable to uncontrolled resource consumption

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-25852

All versions of package pg-native; all versions of package libpq are vulnerable to Denial of Service (DoS) when the addons attempt to cast the second argument to an array and fail. This happens for every non-array argument passed. **Note:** pg-native is a mere binding to npm's libpq library, which in turn has the addons and bindings to the actual C libpq library. This means that problems found in pg-native may transitively impact npm's libpq.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-j32j-2hxv-rqf7

pg-native and libpq vulnerable to uncontrolled resource consumption

CVSS3: 7.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу