VDB
BDU%3A2023-08046
BDU%3A2023-08046
PUBLISHED
CVSS 5 MEDIUM
Уязвимость модуля WebAssembly программной платформы Node.js, позволяющая нарушителю выполнить произвольные команды
Risk Scores
CVSS 2.0
5
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Novell Inc., Red Hat Inc., Сообщество свободного программного обеспечения, ООО «Ред Софт», Node.js Foundation | SUSE Linux Enterprise Server for SAP Applications, OpenSUSE Leap, Suse Linux Enterprise Server, SUSE Linux Enterprise High Performance Computing, SUSE Linux Enterprise Module for Web Scripting, Red Hat Enterprise Linux, Debian GNU/Linux, Red Hat Software Collections, openSUSE Tumbleweed, РЕД ОС (запись в едином реестре российских программ №3751), SUSE Manager Server, SUSE Manager Retail Branch Server, SUSE Manager Proxy, SUSE Enterprise Storage, Node.js, SUSE LINUX |
Timeline
- Nov 22, 2023 CVE Published
- Sep 18, 2024 CVE Updated
References
- https://nodejs.org/en/blog/vulnerability/october-2023-security-releases#code-injection-via-webassembly-export-names-low---cve-2023-39333 url
- https://security-tracker.debian.org/tracker/CVE-2023-39333 url
- https://access.redhat.com/security/cve/cve-2023-39333 url
- https://www.suse.com/security/cve/CVE-2023-39333.html url
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ url