Логотип exploitDog
bind:CVE-2025-23085
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-23085

Количество 25

Количество 25

ubuntu логотип

CVE-2025-23085

около 1 года назад

A memory leak could occur when a remote peer abruptly closes the socket without sending a GOAWAY notification. Additionally, if an invalid header was detected by nghttp2, causing the connection to be terminated by the peer, the same leak was triggered. This flaw could lead to increased memory consumption and potential denial of service under certain conditions. This vulnerability affects HTTP/2 Server users on Node.js v18.x, v20.x, v22.x and v23.x.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2025-23085

около 1 года назад

A memory leak could occur when a remote peer abruptly closes the socket without sending a GOAWAY notification. Additionally, if an invalid header was detected by nghttp2, causing the connection to be terminated by the peer, the same leak was triggered. This flaw could lead to increased memory consumption and potential denial of service under certain conditions. This vulnerability affects HTTP/2 Server users on Node.js v18.x, v20.x, v22.x and v23.x.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2025-23085

около 1 года назад

A memory leak could occur when a remote peer abruptly closes the socket without sending a GOAWAY notification. Additionally, if an invalid header was detected by nghttp2, causing the connection to be terminated by the peer, the same leak was triggered. This flaw could lead to increased memory consumption and potential denial of service under certain conditions. This vulnerability affects HTTP/2 Server users on Node.js v18.x, v20.x, v22.x and v23.x.

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2025-23085

около 1 года назад

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2025-23085

около 1 года назад

A memory leak could occur when a remote peer abruptly closes the socke ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-qv9x-c8c9-rpr8

около 1 года назад

A memory leak could occur when a remote peer abruptly closes the socket without sending a GOAWAY notification. Additionally, if an invalid header was detected by nghttp2, causing the connection to be terminated by the peer, the same leak was triggered. This flaw could lead to increased memory consumption and potential denial of service under certain conditions. This vulnerability affects HTTP/2 Server users on Node.js v18.x, v20.x, v22.x and v23.x.

CVSS3: 5.3
EPSS: Низкий
fstec логотип

BDU:2025-02664

около 1 года назад

Уязвимость программной платформы Node.js, связанная с отсутствием освобождения памяти после эффективного срока службы, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0234-1

около 1 года назад

Security update for nodejs18

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0233-1

около 1 года назад

Security update for nodejs18

EPSS: Низкий
rocky логотип

RLSA-2025:1582

около 1 года назад

Moderate: nodejs:18 security update

EPSS: Низкий
rocky логотип

RLSA-2025:1446

около 1 года назад

Moderate: nodejs:18 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-1582

около 1 года назад

ELSA-2025-1582: nodejs:18 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-1446

около 1 года назад

ELSA-2025-1446: nodejs:18 security update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0284-1

около 1 года назад

Security update for nodejs22

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0237-1

около 1 года назад

Security update for nodejs20

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0232-1

около 1 года назад

Security update for nodejs20

EPSS: Низкий
rocky логотип

RLSA-2025:1613

около 1 года назад

Important: nodejs:22 security update

EPSS: Низкий
rocky логотип

RLSA-2025:1611

около 1 года назад

Important: nodejs:22 security update

EPSS: Низкий
rocky логотип

RLSA-2025:1443

около 1 года назад

Important: nodejs:20 security update

EPSS: Низкий
rocky логотип

RLSA-2025:1351

около 1 года назад

Important: nodejs:20 security update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-23085

A memory leak could occur when a remote peer abruptly closes the socket without sending a GOAWAY notification. Additionally, if an invalid header was detected by nghttp2, causing the connection to be terminated by the peer, the same leak was triggered. This flaw could lead to increased memory consumption and potential denial of service under certain conditions. This vulnerability affects HTTP/2 Server users on Node.js v18.x, v20.x, v22.x and v23.x.

CVSS3: 5.3
0%
Низкий
около 1 года назад
redhat логотип
CVE-2025-23085

A memory leak could occur when a remote peer abruptly closes the socket without sending a GOAWAY notification. Additionally, if an invalid header was detected by nghttp2, causing the connection to be terminated by the peer, the same leak was triggered. This flaw could lead to increased memory consumption and potential denial of service under certain conditions. This vulnerability affects HTTP/2 Server users on Node.js v18.x, v20.x, v22.x and v23.x.

CVSS3: 5.3
0%
Низкий
около 1 года назад
nvd логотип
CVE-2025-23085

A memory leak could occur when a remote peer abruptly closes the socket without sending a GOAWAY notification. Additionally, if an invalid header was detected by nghttp2, causing the connection to be terminated by the peer, the same leak was triggered. This flaw could lead to increased memory consumption and potential denial of service under certain conditions. This vulnerability affects HTTP/2 Server users on Node.js v18.x, v20.x, v22.x and v23.x.

CVSS3: 5.3
0%
Низкий
около 1 года назад
msrc логотип
CVSS3: 5.3
0%
Низкий
около 1 года назад
debian логотип
CVE-2025-23085

A memory leak could occur when a remote peer abruptly closes the socke ...

CVSS3: 5.3
0%
Низкий
около 1 года назад
github логотип
GHSA-qv9x-c8c9-rpr8

A memory leak could occur when a remote peer abruptly closes the socket without sending a GOAWAY notification. Additionally, if an invalid header was detected by nghttp2, causing the connection to be terminated by the peer, the same leak was triggered. This flaw could lead to increased memory consumption and potential denial of service under certain conditions. This vulnerability affects HTTP/2 Server users on Node.js v18.x, v20.x, v22.x and v23.x.

CVSS3: 5.3
0%
Низкий
около 1 года назад
fstec логотип
BDU:2025-02664

Уязвимость программной платформы Node.js, связанная с отсутствием освобождения памяти после эффективного срока службы, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.3
0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0234-1

Security update for nodejs18

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0233-1

Security update for nodejs18

около 1 года назад
rocky логотип
RLSA-2025:1582

Moderate: nodejs:18 security update

около 1 года назад
rocky логотип
RLSA-2025:1446

Moderate: nodejs:18 security update

около 1 года назад
oracle-oval логотип
ELSA-2025-1582

ELSA-2025-1582: nodejs:18 security update (MODERATE)

около 1 года назад
oracle-oval логотип
ELSA-2025-1446

ELSA-2025-1446: nodejs:18 security update (MODERATE)

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0284-1

Security update for nodejs22

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0237-1

Security update for nodejs20

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0232-1

Security update for nodejs20

около 1 года назад
rocky логотип
RLSA-2025:1613

Important: nodejs:22 security update

около 1 года назад
rocky логотип
RLSA-2025:1611

Important: nodejs:22 security update

около 1 года назад
rocky логотип
RLSA-2025:1443

Important: nodejs:20 security update

около 1 года назад
rocky логотип
RLSA-2025:1351

Important: nodejs:20 security update

около 1 года назад

Уязвимостей на страницу