VDB
BIT-node-min-2022-0778
BIT-node-min-2022-0778
PUBLISHED
CVSS 7.5 HIGH
Infinite loop in BN_mod_sqrt() reachable when parsing certificates
Risk Scores
CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | node-min | 12.0.0, 12.13.0, 14.0.0 |
Timeline
- Dec 16, 2024 CVE Published
- Apr 17, 2026 CVE Updated
- May 15, 2026 Distribution Patch
References
- https://lists.debian.org/debian-lts-announce/2022/03/msg00024.html url
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/W6K3PR542DXWLEFFMFIDMME4CWMHJRMG/ url
- https://security.gentoo.org/glsa/202210-02 url
- https://www.oracle.com/security-alerts/cpujul2022.html url
- https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=3118eb64934499d93db3230748a452351d1d9a65 url
- https://lists.debian.org/debian-lts-announce/2022/03/msg00023.html url
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/323SNN6ZX7PRJJWP2BUAFLPUAE42XWLZ/ url
- https://www.tenable.com/security/tns-2022-07 url
- https://cert-portal.siemens.com/productcert/html/ssa-398330.html url
- https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2022-0002 url
- https://security.netapp.com/advisory/ntap-20220321-0002/ url
- https://cert-portal.siemens.com/productcert/pdf/ssa-712929.pdf url
- https://security.netapp.com/advisory/ntap-20240621-0006/ url
- https://nvd.nist.gov/vuln/detail/CVE-2022-0778 url
- https://cert-portal.siemens.com/productcert/html/ssa-108696.html url
- https://security.netapp.com/advisory/ntap-20220429-0005/ url
- https://support.apple.com/kb/HT213257 url
- https://www.oracle.com/security-alerts/cpuapr2022.html url
- http://seclists.org/fulldisclosure/2022/May/38 url
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GDB3GQVJPXJE7X5C5JN6JAA4XUDWD6E6/ url
…and 15 more