Количество 42
Количество 42

RLSA-2021:3074
Moderate: nodejs:14 security, bug fix, and enhancement update
ELSA-2021-3074
ELSA-2021-3074: nodejs:14 security, bug fix, and enhancement update (MODERATE)
ELSA-2021-3073
ELSA-2021-3073: nodejs:12 security, bug fix, and enhancement update (MODERATE)

openSUSE-SU-2021:2354-1
Security update for nodejs14

openSUSE-SU-2021:1060-1
Security update for nodejs14

SUSE-SU-2021:2354-1
Security update for nodejs14

SUSE-SU-2021:2319-1
Security update for nodejs14

openSUSE-SU-2021:2353-1
Security update for nodejs10

openSUSE-SU-2021:2327-1
Security update for nodejs12

openSUSE-SU-2021:1061-1
Security update for nodejs10

openSUSE-SU-2021:1059-1
Security update for nodejs12

SUSE-SU-2021:2353-1
Security update for nodejs10

SUSE-SU-2021:2327-1
Security update for nodejs12

SUSE-SU-2021:2326-1
Security update for nodejs12

SUSE-SU-2021:2323-1
Security update for nodejs10

RLSA-2021:3073
Moderate: nodejs:12 security, bug fix, and enhancement update

CVE-2021-22918
Node.js before 16.4.1, 14.17.2, 12.22.2 is vulnerable to an out-of-bounds read when uv__idna_toascii() is used to convert strings to ASCII. The pointer p is read and increased without checking whether it is beyond pe, with the latter holding a pointer to the end of the buffer. This can lead to information disclosures or crashes. This function can be triggered via uv_getaddrinfo().

CVE-2021-22918
Node.js before 16.4.1, 14.17.2, 12.22.2 is vulnerable to an out-of-bounds read when uv__idna_toascii() is used to convert strings to ASCII. The pointer p is read and increased without checking whether it is beyond pe, with the latter holding a pointer to the end of the buffer. This can lead to information disclosures or crashes. This function can be triggered via uv_getaddrinfo().

CVE-2021-22918
Node.js before 16.4.1, 14.17.2, 12.22.2 is vulnerable to an out-of-bounds read when uv__idna_toascii() is used to convert strings to ASCII. The pointer p is read and increased without checking whether it is beyond pe, with the latter holding a pointer to the end of the buffer. This can lead to information disclosures or crashes. This function can be triggered via uv_getaddrinfo().

CVE-2021-22918
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | RLSA-2021:3074 Moderate: nodejs:14 security, bug fix, and enhancement update | почти 4 года назад | ||
ELSA-2021-3074 ELSA-2021-3074: nodejs:14 security, bug fix, and enhancement update (MODERATE) | почти 4 года назад | |||
ELSA-2021-3073 ELSA-2021-3073: nodejs:12 security, bug fix, and enhancement update (MODERATE) | почти 4 года назад | |||
![]() | openSUSE-SU-2021:2354-1 Security update for nodejs14 | около 4 лет назад | ||
![]() | openSUSE-SU-2021:1060-1 Security update for nodejs14 | около 4 лет назад | ||
![]() | SUSE-SU-2021:2354-1 Security update for nodejs14 | около 4 лет назад | ||
![]() | SUSE-SU-2021:2319-1 Security update for nodejs14 | около 4 лет назад | ||
![]() | openSUSE-SU-2021:2353-1 Security update for nodejs10 | около 4 лет назад | ||
![]() | openSUSE-SU-2021:2327-1 Security update for nodejs12 | около 4 лет назад | ||
![]() | openSUSE-SU-2021:1061-1 Security update for nodejs10 | около 4 лет назад | ||
![]() | openSUSE-SU-2021:1059-1 Security update for nodejs12 | около 4 лет назад | ||
![]() | SUSE-SU-2021:2353-1 Security update for nodejs10 | около 4 лет назад | ||
![]() | SUSE-SU-2021:2327-1 Security update for nodejs12 | около 4 лет назад | ||
![]() | SUSE-SU-2021:2326-1 Security update for nodejs12 | около 4 лет назад | ||
![]() | SUSE-SU-2021:2323-1 Security update for nodejs10 | около 4 лет назад | ||
![]() | RLSA-2021:3073 Moderate: nodejs:12 security, bug fix, and enhancement update | почти 4 года назад | ||
![]() | CVE-2021-22918 Node.js before 16.4.1, 14.17.2, 12.22.2 is vulnerable to an out-of-bounds read when uv__idna_toascii() is used to convert strings to ASCII. The pointer p is read and increased without checking whether it is beyond pe, with the latter holding a pointer to the end of the buffer. This can lead to information disclosures or crashes. This function can be triggered via uv_getaddrinfo(). | CVSS3: 5.3 | 1% Низкий | около 4 лет назад |
![]() | CVE-2021-22918 Node.js before 16.4.1, 14.17.2, 12.22.2 is vulnerable to an out-of-bounds read when uv__idna_toascii() is used to convert strings to ASCII. The pointer p is read and increased without checking whether it is beyond pe, with the latter holding a pointer to the end of the buffer. This can lead to information disclosures or crashes. This function can be triggered via uv_getaddrinfo(). | CVSS3: 5.3 | 1% Низкий | около 4 лет назад |
![]() | CVE-2021-22918 Node.js before 16.4.1, 14.17.2, 12.22.2 is vulnerable to an out-of-bounds read when uv__idna_toascii() is used to convert strings to ASCII. The pointer p is read and increased without checking whether it is beyond pe, with the latter holding a pointer to the end of the buffer. This can lead to information disclosures or crashes. This function can be triggered via uv_getaddrinfo(). | CVSS3: 5.3 | 1% Низкий | около 4 лет назад |
![]() | CVSS3: 5.3 | 1% Низкий | 6 месяцев назад |
Уязвимостей на страницу