Show filters
34 Total Results
Displaying 31-34 of 34
Sort by:
Attacker Value
Unknown

CVE-2017-18214

Disclosure Date: March 04, 2018 (last updated November 26, 2024)
The moment module before 2.19.3 for Node.js is prone to a regular expression denial of service via a crafted date string, a different vulnerability than CVE-2016-4055.
Attacker Value
Unknown

CVE-2016-4055

Disclosure Date: January 23, 2017 (last updated November 08, 2023)
The duration function in the moment package before 2.11.2 for Node.js allows remote attackers to cause a denial of service (CPU consumption) via a long string, aka a "regular expression Denial of Service (ReDoS)."
Attacker Value
Unknown

CVE-2013-2687

Disclosure Date: July 12, 2013 (last updated October 05, 2023)
Stack-based buffer overflow in the bpe_decompress function in (1) BlackBerry QNX Neutrino RTOS through 6.5.0 SP1 and (2) QNX Momentics Tool Suite through 6.5.0 SP1 in the QNX Software Development Platform allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted packets to TCP port 4868.
0
Attacker Value
Unknown

CVE-2008-3024

Disclosure Date: July 07, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in phgrafx in QNX Momentics (aka RTOS) 6.3.2 and earlier allows local users to gain privileges via a long .pal filename in palette/.
0