First published: Sat Jan 02 2016(Updated: )
Node.js 0.12.x before 0.12.9, 4.x before 4.2.3, and 5.x before 5.1.1 does not ensure the availability of a parser for each HTTP socket, which allows remote attackers to cause a denial of service (uncaughtException and service outage) via a pipelined HTTP request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nodejs Node.js | =0.12.0 | |
Nodejs Node.js | =0.12.1 | |
Nodejs Node.js | =0.12.2 | |
Nodejs Node.js | =0.12.3 | |
Nodejs Node.js | =0.12.4 | |
Nodejs Node.js | =0.12.5 | |
Nodejs Node.js | =0.12.6 | |
Nodejs Node.js | =0.12.7 | |
Nodejs Node.js | =0.12.8 | |
Nodejs Node.js | =4.2.0 | |
Nodejs Node.js | =4.2.1 | |
Nodejs Node.js | =4.2.2 | |
Nodejs Node.js | =5.0.0 | |
Nodejs Node.js | =5.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.