Логотип exploitDog
product: "node.js"
Консоль
Логотип exploitDog

exploitDog

product: "node.js"

Количество 1 064

Количество 1 064

redhat логотип

CVE-2016-1669

больше 9 лет назад

The Zone::New function in zone.cc in Google V8 before 5.0.71.47, as used in Google Chrome before 50.0.2661.102, does not properly determine when to expand certain memory allocations, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via crafted JavaScript code.

CVSS3: 5.6
EPSS: Низкий
nvd логотип

CVE-2016-1669

больше 9 лет назад

The Zone::New function in zone.cc in Google V8 before 5.0.71.47, as used in Google Chrome before 50.0.2661.102, does not properly determine when to expand certain memory allocations, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via crafted JavaScript code.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2016-1669

больше 9 лет назад

The Zone::New function in zone.cc in Google V8 before 5.0.71.47, as us ...

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2015-5380

больше 10 лет назад

The Utf8DecoderBase::WriteUtf16Slow function in unicode-decoder.cc in Google V8, as used in Node.js before 0.12.6, io.js before 1.8.3 and 2.x before 2.3.3, and other products, does not verify that there is memory available for a UTF-16 surrogate pair, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted byte sequence.

CVSS2: 7.5
EPSS: Низкий
redhat логотип

CVE-2015-5380

больше 10 лет назад

The Utf8DecoderBase::WriteUtf16Slow function in unicode-decoder.cc in Google V8, as used in Node.js before 0.12.6, io.js before 1.8.3 and 2.x before 2.3.3, and other products, does not verify that there is memory available for a UTF-16 surrogate pair, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted byte sequence.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2015-5380

больше 10 лет назад

The Utf8DecoderBase::WriteUtf16Slow function in unicode-decoder.cc in Google V8, as used in Node.js before 0.12.6, io.js before 1.8.3 and 2.x before 2.3.3, and other products, does not verify that there is memory available for a UTF-16 surrogate pair, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted byte sequence.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2015-5380

больше 10 лет назад

The Utf8DecoderBase::WriteUtf16Slow function in unicode-decoder.cc in ...

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2013-6668

почти 12 лет назад

Multiple unspecified vulnerabilities in Google V8 before 3.24.35.10, as used in Google Chrome before 33.0.1750.146, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.

CVSS2: 7.5
EPSS: Средний
redhat логотип

CVE-2013-6668

почти 12 лет назад

Multiple unspecified vulnerabilities in Google V8 before 3.24.35.10, as used in Google Chrome before 33.0.1750.146, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.

CVSS2: 6.8
EPSS: Средний
nvd логотип

CVE-2013-6668

почти 12 лет назад

Multiple unspecified vulnerabilities in Google V8 before 3.24.35.10, as used in Google Chrome before 33.0.1750.146, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.

CVSS2: 7.5
EPSS: Средний
debian логотип

CVE-2013-6668

почти 12 лет назад

Multiple unspecified vulnerabilities in Google V8 before 3.24.35.10, a ...

CVSS2: 7.5
EPSS: Средний
ubuntu логотип

CVE-2013-2882

больше 12 лет назад

Google V8, as used in Google Chrome before 28.0.1500.95, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion."

CVSS2: 7.5
EPSS: Низкий
redhat логотип

CVE-2013-2882

больше 12 лет назад

Google V8, as used in Google Chrome before 28.0.1500.95, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion."

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2013-2882

больше 12 лет назад

Google V8, as used in Google Chrome before 28.0.1500.95, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion."

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2013-2882

больше 12 лет назад

Google V8, as used in Google Chrome before 28.0.1500.95, allows remote ...

CVSS2: 7.5
EPSS: Низкий
fstec логотип

BDU:2025-10620

9 месяцев назад

Уязвимость функции ThrowException() модели разрешений программной платформы Node.js, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2024-08724

больше 2 лет назад

Уязвимость функции process.binding() программной платформы Node.js, позволяющая нарушителю обойти ограничения безопасности и получить несанкционированный доступ к защищаемой информации

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2024-08682

больше 2 лет назад

Уязвимость конфигурации experimental-permission программной платформы Node.js, позволяющая нарушителю обойти ограничения безопасности и получить несанкционированный доступ к защищаемой информации

CVSS3: 8.8
EPSS: Низкий
fstec логотип

BDU:2022-01720

около 11 лет назад

Уязвимость программной платформы Node.js, связанная с ошибками управления ресурсом, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:2760-1

больше 4 лет назад

Security update for c-ares

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2016-1669

The Zone::New function in zone.cc in Google V8 before 5.0.71.47, as used in Google Chrome before 50.0.2661.102, does not properly determine when to expand certain memory allocations, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via crafted JavaScript code.

CVSS3: 5.6
2%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-1669

The Zone::New function in zone.cc in Google V8 before 5.0.71.47, as used in Google Chrome before 50.0.2661.102, does not properly determine when to expand certain memory allocations, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via crafted JavaScript code.

CVSS3: 8.8
2%
Низкий
больше 9 лет назад
debian логотип
CVE-2016-1669

The Zone::New function in zone.cc in Google V8 before 5.0.71.47, as us ...

CVSS3: 8.8
2%
Низкий
больше 9 лет назад
ubuntu логотип
CVE-2015-5380

The Utf8DecoderBase::WriteUtf16Slow function in unicode-decoder.cc in Google V8, as used in Node.js before 0.12.6, io.js before 1.8.3 and 2.x before 2.3.3, and other products, does not verify that there is memory available for a UTF-16 surrogate pair, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted byte sequence.

CVSS2: 7.5
1%
Низкий
больше 10 лет назад
redhat логотип
CVE-2015-5380

The Utf8DecoderBase::WriteUtf16Slow function in unicode-decoder.cc in Google V8, as used in Node.js before 0.12.6, io.js before 1.8.3 and 2.x before 2.3.3, and other products, does not verify that there is memory available for a UTF-16 surrogate pair, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted byte sequence.

CVSS2: 4.3
1%
Низкий
больше 10 лет назад
nvd логотип
CVE-2015-5380

The Utf8DecoderBase::WriteUtf16Slow function in unicode-decoder.cc in Google V8, as used in Node.js before 0.12.6, io.js before 1.8.3 and 2.x before 2.3.3, and other products, does not verify that there is memory available for a UTF-16 surrogate pair, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted byte sequence.

CVSS2: 7.5
1%
Низкий
больше 10 лет назад
debian логотип
CVE-2015-5380

The Utf8DecoderBase::WriteUtf16Slow function in unicode-decoder.cc in ...

CVSS2: 7.5
1%
Низкий
больше 10 лет назад
ubuntu логотип
CVE-2013-6668

Multiple unspecified vulnerabilities in Google V8 before 3.24.35.10, as used in Google Chrome before 33.0.1750.146, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.

CVSS2: 7.5
13%
Средний
почти 12 лет назад
redhat логотип
CVE-2013-6668

Multiple unspecified vulnerabilities in Google V8 before 3.24.35.10, as used in Google Chrome before 33.0.1750.146, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.

CVSS2: 6.8
13%
Средний
почти 12 лет назад
nvd логотип
CVE-2013-6668

Multiple unspecified vulnerabilities in Google V8 before 3.24.35.10, as used in Google Chrome before 33.0.1750.146, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.

CVSS2: 7.5
13%
Средний
почти 12 лет назад
debian логотип
CVE-2013-6668

Multiple unspecified vulnerabilities in Google V8 before 3.24.35.10, a ...

CVSS2: 7.5
13%
Средний
почти 12 лет назад
ubuntu логотип
CVE-2013-2882

Google V8, as used in Google Chrome before 28.0.1500.95, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion."

CVSS2: 7.5
2%
Низкий
больше 12 лет назад
redhat логотип
CVE-2013-2882

Google V8, as used in Google Chrome before 28.0.1500.95, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion."

CVSS2: 6.8
2%
Низкий
больше 12 лет назад
nvd логотип
CVE-2013-2882

Google V8, as used in Google Chrome before 28.0.1500.95, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion."

CVSS2: 7.5
2%
Низкий
больше 12 лет назад
debian логотип
CVE-2013-2882

Google V8, as used in Google Chrome before 28.0.1500.95, allows remote ...

CVSS2: 7.5
2%
Низкий
больше 12 лет назад
fstec логотип
BDU:2025-10620

Уязвимость функции ThrowException() модели разрешений программной платформы Node.js, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
0%
Низкий
9 месяцев назад
fstec логотип
BDU:2024-08724

Уязвимость функции process.binding() программной платформы Node.js, позволяющая нарушителю обойти ограничения безопасности и получить несанкционированный доступ к защищаемой информации

CVSS3: 7.5
0%
Низкий
больше 2 лет назад
fstec логотип
BDU:2024-08682

Уязвимость конфигурации experimental-permission программной платформы Node.js, позволяющая нарушителю обойти ограничения безопасности и получить несанкционированный доступ к защищаемой информации

CVSS3: 8.8
0%
Низкий
больше 2 лет назад
fstec логотип
BDU:2022-01720

Уязвимость программной платформы Node.js, связанная с ошибками управления ресурсом, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
1%
Низкий
около 11 лет назад
suse-cvrf логотип
openSUSE-SU-2021:2760-1

Security update for c-ares

0%
Низкий
больше 4 лет назад

Уязвимостей на страницу