Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Denial of Service (DoS)
Vulnerability Description
All versions of package @discordjs/opus are vulnerable to Denial of Service (DoS) when trying to encode using an encoder with zero channels, or a non-initialized buffer. This leads to a hard crash.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
N/A
Vulnerability Title
@discordjs/opus 安全漏洞
Vulnerability Description
@discordjs/opus是discord.js开源的一种与 libopus v1.3 的本机绑定。 @discordjs/opus 存在安全漏洞,该漏洞源于当尝试使用具有零通道的编码器或未初始化的缓冲区进行编码时,此软件包容易受到拒绝服务 (DoS) 的攻击。
CVSS Information
N/A
Vulnerability Type
N/A