Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Denial of Service (DoS)
Vulnerability Description
The package node-lmdb before 0.9.7 are vulnerable to Denial of Service (DoS) when defining a non-invokable ToString value, which will cause a crash during type check.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Vulnerability Type
N/A
Vulnerability Title
node-lmdb 安全漏洞
Vulnerability Description
node-lmdb是匈牙利Timur Kristof个人开发者的一个用于 LMDB 的 node.js 绑定。 node-lmdb 存在安全漏洞,该漏洞源于 node-lmdb 在定义不可调用的 ToString 值时容易受到拒绝服务 (DoS) 的攻击。成功利用将导致在类型检查期间崩溃。该漏洞影响以下产品:node-lmdb 0.9.7 之前的版本。
CVSS Information
N/A
Vulnerability Type
N/A