SB2017101035 - Resource exhaustion in Node.js
Published: October 10, 2017 Updated: August 3, 2020
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Resource exhaustion (CVE-ID: CVE-2015-7384)
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
Node.js 4.0.0, 4.1.0, and 4.1.1 allows remote attackers to cause a denial of service.
Remediation
Install update from vendor's website.