Lucene search

K
f5F5F5:K18364001
HistoryMay 09, 2018 - 12:00 a.m.

K18364001 : Node.js vulnerability CVE-2017-15896

2018-05-0900:00:00
my.f5.com
54

6.7 Medium

AI Score

Confidence

High

0.946 High

EPSS

Percentile

99.3%

Security Advisory Description

Node.js was affected by OpenSSL vulnerability CVE-2017-3737 in regards to the use of SSL_read() due to TLS handshake failure. The result was that an active network attacker could send application data to Node.js using the TLS or HTTP2 modules in a way that bypassed TLS authentication and encryption. (CVE-2017-15896)

Impact

There is no impact; F5 products are not affected by this vulnerability.