summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorGuilhem Moulin <guilhem@debian.org>2023-08-02 02:56:07 +0200
committerGuilhem Moulin <guilhem@debian.org>2023-08-02 02:56:07 +0200
commit507a68b1f16eb870e23502d5769896192b0fd3a3 (patch)
treea453bfcb76af855cc590c49687aa636f3141d5d0
parent8049fa63df3d93c5084d0d04348546d49953637a (diff)
CVE-2023-30581/nodejs: Link to disclosure report.
-rw-r--r--data/CVE/list1
1 files changed, 1 insertions, 0 deletions
diff --git a/data/CVE/list b/data/CVE/list
index c9e46c6961..7a77c4434e 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -11952,6 +11952,7 @@ CVE-2023-30581
- nodejs <unfixed> (bug #1039990)
[buster] - nodejs <not-affected> (v10.x doesn't support policy manifests)
NOTE: https://nodejs.org/en/blog/vulnerability/june-2023-security-releases#mainmoduleproto-bypass-experimental-policy-mechanism-high-cve-2023-30581
+ NOTE: https://hackerone.com/reports/1877919
NOTE: Fixed by: https://github.com/nodejs/node/commit/a6f4e87bc913ff18c1859b8a350c24f744355e66 (v16.x)
CVE-2023-30580
RESERVED

© 2014-2024 Faster IT GmbH | imprint | privacy policy