[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

253164

 
 

909

 
 

197077

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2017:2912-01 -- Redhat rh-nodejs4-nodejs-tough-cookie

ID: oval:org.secpod.oval:def:504830Date: (C)2021-02-03   (M)2022-10-10
Class: PATCHFamily: unix




Tough-Cookie is a Node.js module that offers RFC6265 Cookies and Cookie Jar. The following packages have been upgraded to a later upstream version: rh-nodejs4-nodejs-tough-cookie . Security Fix: * Regular expression denial of service flaws were found in Tough-Cookie. An attacker able to make an application using Touch-Cookie to parse a sufficiently large HTTP request Cookie header could cause the application to consume an excessive amount of CPU

Platform:
Red Hat Enterprise Linux 7
Red Hat Enterprise Linux 6
Product:
rh-nodejs4-nodejs-tough-cookie
Reference:
RHSA-2017:2912-01
CVE-2016-1000232
CVE-2017-15010
CVE    2
CVE-2017-15010
CVE-2016-1000232
CPE    3
cpe:/o:redhat:enterprise_linux:7
cpe:/o:redhat:enterprise_linux:6
cpe:/a:redhat:rh-nodejs4-nodejs-tough-cookie

© SecPod Technologies