Lucene search

K
redhatcveRedhat.comRH:CVE-2018-12122
HistoryDec 28, 2019 - 10:04 a.m.

CVE-2018-12122

2019-12-2810:04:03
redhat.com
access.redhat.com
14

EPSS

0.006

Percentile

78.1%

It was found that Node.js HTTP server was vulnerable to a Slowloris type attack. An attacker could make long lived connections by sending bytes very slowly to the server, saturating its resource and possibly resulting in a denial of service.

Mitigation

The use of a Load Balancer or a Reverse Proxy will increase the difficulty of the attack.