Количество 42
Количество 42
RLSA-2021:3074
Moderate: nodejs:14 security, bug fix, and enhancement update
ELSA-2021-3074
ELSA-2021-3074: nodejs:14 security, bug fix, and enhancement update (MODERATE)
ELSA-2021-3073
ELSA-2021-3073: nodejs:12 security, bug fix, and enhancement update (MODERATE)
openSUSE-SU-2021:2354-1
Security update for nodejs14
openSUSE-SU-2021:1060-1
Security update for nodejs14
SUSE-SU-2021:2354-1
Security update for nodejs14
SUSE-SU-2021:2319-1
Security update for nodejs14
openSUSE-SU-2021:2353-1
Security update for nodejs10
openSUSE-SU-2021:2327-1
Security update for nodejs12
openSUSE-SU-2021:1061-1
Security update for nodejs10
openSUSE-SU-2021:1059-1
Security update for nodejs12
SUSE-SU-2021:2353-1
Security update for nodejs10
SUSE-SU-2021:2327-1
Security update for nodejs12
SUSE-SU-2021:2326-1
Security update for nodejs12
SUSE-SU-2021:2323-1
Security update for nodejs10
RLSA-2021:3073
Moderate: nodejs:12 security, bug fix, and enhancement update
CVE-2021-22918
Node.js before 16.4.1, 14.17.2, 12.22.2 is vulnerable to an out-of-bounds read when uv__idna_toascii() is used to convert strings to ASCII. The pointer p is read and increased without checking whether it is beyond pe, with the latter holding a pointer to the end of the buffer. This can lead to information disclosures or crashes. This function can be triggered via uv_getaddrinfo().
CVE-2021-22918
Node.js before 16.4.1, 14.17.2, 12.22.2 is vulnerable to an out-of-bounds read when uv__idna_toascii() is used to convert strings to ASCII. The pointer p is read and increased without checking whether it is beyond pe, with the latter holding a pointer to the end of the buffer. This can lead to information disclosures or crashes. This function can be triggered via uv_getaddrinfo().
CVE-2021-22918
Node.js before 16.4.1, 14.17.2, 12.22.2 is vulnerable to an out-of-bounds read when uv__idna_toascii() is used to convert strings to ASCII. The pointer p is read and increased without checking whether it is beyond pe, with the latter holding a pointer to the end of the buffer. This can lead to information disclosures or crashes. This function can be triggered via uv_getaddrinfo().
CVE-2021-22918
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
RLSA-2021:3074 Moderate: nodejs:14 security, bug fix, and enhancement update | около 4 лет назад | |||
ELSA-2021-3074 ELSA-2021-3074: nodejs:14 security, bug fix, and enhancement update (MODERATE) | около 4 лет назад | |||
ELSA-2021-3073 ELSA-2021-3073: nodejs:12 security, bug fix, and enhancement update (MODERATE) | около 4 лет назад | |||
openSUSE-SU-2021:2354-1 Security update for nodejs14 | больше 4 лет назад | |||
openSUSE-SU-2021:1060-1 Security update for nodejs14 | больше 4 лет назад | |||
SUSE-SU-2021:2354-1 Security update for nodejs14 | больше 4 лет назад | |||
SUSE-SU-2021:2319-1 Security update for nodejs14 | больше 4 лет назад | |||
openSUSE-SU-2021:2353-1 Security update for nodejs10 | больше 4 лет назад | |||
openSUSE-SU-2021:2327-1 Security update for nodejs12 | больше 4 лет назад | |||
openSUSE-SU-2021:1061-1 Security update for nodejs10 | больше 4 лет назад | |||
openSUSE-SU-2021:1059-1 Security update for nodejs12 | больше 4 лет назад | |||
SUSE-SU-2021:2353-1 Security update for nodejs10 | больше 4 лет назад | |||
SUSE-SU-2021:2327-1 Security update for nodejs12 | больше 4 лет назад | |||
SUSE-SU-2021:2326-1 Security update for nodejs12 | больше 4 лет назад | |||
SUSE-SU-2021:2323-1 Security update for nodejs10 | больше 4 лет назад | |||
RLSA-2021:3073 Moderate: nodejs:12 security, bug fix, and enhancement update | около 4 лет назад | |||
CVE-2021-22918 Node.js before 16.4.1, 14.17.2, 12.22.2 is vulnerable to an out-of-bounds read when uv__idna_toascii() is used to convert strings to ASCII. The pointer p is read and increased without checking whether it is beyond pe, with the latter holding a pointer to the end of the buffer. This can lead to information disclosures or crashes. This function can be triggered via uv_getaddrinfo(). | CVSS3: 5.3 | 1% Низкий | больше 4 лет назад | |
CVE-2021-22918 Node.js before 16.4.1, 14.17.2, 12.22.2 is vulnerable to an out-of-bounds read when uv__idna_toascii() is used to convert strings to ASCII. The pointer p is read and increased without checking whether it is beyond pe, with the latter holding a pointer to the end of the buffer. This can lead to information disclosures or crashes. This function can be triggered via uv_getaddrinfo(). | CVSS3: 5.3 | 1% Низкий | больше 4 лет назад | |
CVE-2021-22918 Node.js before 16.4.1, 14.17.2, 12.22.2 is vulnerable to an out-of-bounds read when uv__idna_toascii() is used to convert strings to ASCII. The pointer p is read and increased without checking whether it is beyond pe, with the latter holding a pointer to the end of the buffer. This can lead to information disclosures or crashes. This function can be triggered via uv_getaddrinfo(). | CVSS3: 5.3 | 1% Низкий | больше 4 лет назад | |
CVSS3: 5.3 | 1% Низкий | 9 месяцев назад |
Уязвимостей на страницу