Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2018-12121
Description:Node.js: All versions prior to Node.js 6.15.0, 8.14.0, 10.14.0 and 11.3.0: Denial of Service with large HTTP headers: By using a combination of many requests with maximum sized headers (almost 80 KB per connection), and carefully timed completion of the headers, it is possible to cause the HTTP server to abort from heap allocation failure. Attack potential is mitigated by the use of a load balancer or other proxy layer.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2018-12121
BugTraq ID: 106043
http://www.securityfocus.com/bid/106043
https://security.gentoo.org/glsa/202003-48
RedHat Security Advisories: RHSA-2019:1821
https://access.redhat.com/errata/RHSA-2019:1821
RedHat Security Advisories: RHSA-2019:2258
https://access.redhat.com/errata/RHSA-2019:2258
RedHat Security Advisories: RHSA-2019:3497
https://access.redhat.com/errata/RHSA-2019:3497




© 1998-2025 E-Soft Inc. All rights reserved.