Lucene search

K
redosRedosROS-20240904-12
HistorySep 04, 2024 - 12:00 a.m.

ROS-20240904-12

2024-09-0400:00:00
redos.red-soft.ru
4
ecmascript 5
es5-ext
vulnerability
resource consumption
denial of service
unix

CVSS3

0

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:N

AI Score

7

Confidence

High

A vulnerability in the ECMAScript 5 extension of the es5-ext package is related to uncontrolled resource consumption.
Exploitation of the vulnerability could allow an attacker to cause a denial of service

OSVersionArchitecturePackageVersionFilename
redos7.3x86_64nodejs-es5-ext< 0.10.63-1UNKNOWN

CVSS3

0

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:N

AI Score

7

Confidence

High