Lucene search

K
osvGoogleOSV:CVE-2018-7162
HistoryJun 13, 2018 - 4:29 p.m.

CVE-2018-7162

2018-06-1316:29:01
Google
osv.dev
8

7 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

72.7%

All versions of Node.js 9.x and 10.x are vulnerable and the severity is HIGH. An attacker can cause a denial of service (DoS) by causing a node process which provides an http server supporting TLS server to crash. This can be accomplished by sending duplicate/unexpected messages during the handshake. This vulnerability has been addressed by updating the TLS implementation.