Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Denial of Service (DoS)
Vulnerability Description
All versions of package bignum are vulnerable to Denial of Service (DoS) due to a type-check exception in V8, when verifying the type of the second argument to the .powm function, V8 will crash regardless of Node try/catch blocks.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
N/A
Vulnerability Title
bignum 安全漏洞
Vulnerability Description
bignum是Stefan Thomas个人开发者的一个使用 OpenSSL 的 Node.js 的任意精度积分算法。 bignum 存在安全漏洞,该漏洞源于容易受到拒绝服务 (DoS) 的攻击。
CVSS Information
N/A
Vulnerability Type
N/A