Tavis Ormandy discovered that Node.js incorrectly handled certain inputs. If a user or an automated system were tricked into opening a specially crafted input file, a remote attacker could possibly use this issue to cause a denial of service. (CVE-2022-0778)
Elison Niven discovered that Node.js incorrectly handled certain inputs. If a user or an automated system were tricked into opening a specially crafted input file, a remote attacker could possibly use this issue to execute arbitrary code. (CVE-2022-1292)
Chancen and Daniel Fiala discovered that Node.js incorrectly handled certain inputs. If a user or an automated system were tricked into opening a specially crafted input file, a remote attacker could possibly use this issue to execute arbitrary code. (CVE-2022-2068)
Alex Chernyakhovsky discovered that Node.js incorrectly handled certain inputs. If a user or an automated system were tricked into opening a specially crafted input file, a remote attacker could possibly use this issue to execute arbitrary code. (CVE-2022-2097)
{ "availability": "No subscription required", "binaries": [ { "binary_version": "12.22.9~dfsg-1ubuntu3.1", "binary_name": "libnode-dev" }, { "binary_version": "12.22.9~dfsg-1ubuntu3.1", "binary_name": "libnode72" }, { "binary_version": "12.22.9~dfsg-1ubuntu3.1", "binary_name": "libnode72-dbgsym" }, { "binary_version": "12.22.9~dfsg-1ubuntu3.1", "binary_name": "nodejs" }, { "binary_version": "12.22.9~dfsg-1ubuntu3.1", "binary_name": "nodejs-dbgsym" }, { "binary_version": "12.22.9~dfsg-1ubuntu3.1", "binary_name": "nodejs-doc" } ] }