Show filters
34 Total Results
Displaying 31-34 of 34
Sort by:
Attacker Value
Unknown
CVE-2017-18214
Disclosure Date: March 04, 2018 (last updated November 26, 2024)
The moment module before 2.19.3 for Node.js is prone to a regular expression denial of service via a crafted date string, a different vulnerability than CVE-2016-4055.
0
Attacker Value
Unknown
CVE-2016-4055
Disclosure Date: January 23, 2017 (last updated November 08, 2023)
The duration function in the moment package before 2.11.2 for Node.js allows remote attackers to cause a denial of service (CPU consumption) via a long string, aka a "regular expression Denial of Service (ReDoS)."
0
Attacker Value
Unknown
CVE-2013-2687
Disclosure Date: July 12, 2013 (last updated October 05, 2023)
Stack-based buffer overflow in the bpe_decompress function in (1) BlackBerry QNX Neutrino RTOS through 6.5.0 SP1 and (2) QNX Momentics Tool Suite through 6.5.0 SP1 in the QNX Software Development Platform allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted packets to TCP port 4868.
0
Attacker Value
Unknown
CVE-2008-3024
Disclosure Date: July 07, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in phgrafx in QNX Momentics (aka RTOS) 6.3.2 and earlier allows local users to gain privileges via a long .pal filename in palette/.
0