CVE-2021-44533Medium· 5.3▾ SunlitNode.js < 12.22.9, < 14.18.3, < 16.13.2, and < 17.3.1 did not handle multi-value Relative Distinguished Names correctly. Attackers could craft certificate subjects containing a single-value Relative Distinguished Name that would be inter…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 29.2 · likelihood 1.9 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
9.4%
Node.js < 12.22.9, < 14.18.3, < 16.13.2, and < 17.3.1 did not handle multi-value Relative Distinguished Names correctly. Attackers could craft certificate subjects containing a single-value Relative Distinguished Name that would be interpreted as a multi-value Relative Distinguished Name, for example, in order to inject a Common Name that would allow bypassing the certificate subject verification.Affected versions of Node.js that do not accept multi-value Relative Distinguished Names and are thus not vulnerable to such attacks themselves. However, third-party code that uses node's ambiguous presentation of certificate subjects may be vulnerable.
node.js < 12.22.9node.js >= 14.0.0, < 14.18.3node.js >= 16.0.0, < 16.13.2node.js >= 17.0.0, < 17.3.1graalvm = 20.3.5graalvm = 21.3.1graalvm = 22.0.0.2mysql_cluster < 8.0.29mysql_cluster = 8.0.29mysql_connectors <= 8.0.28mysql_enterprise_monitor <= 8.0.29mysql_server <= 5.7.37mysql_server >= 8.0.0, <= 8.0.28mysql_workbench <= 8.0.28peoplesoft_enterprise_peopletools = 8.58peoplesoft_enterprise_peopletools = 8.59debian_linux = 11.0Upgrade past the affected range:
node.js 17.3.1mysql_cluster 8.0.29Connected by shared product, vendor, weakness, or advisory.
CVE-2021-3450High· 7.4The X509_V_FLAG_X509_STRICT flag enables additional security checks of the certificates present in a certificate chain
CVE-2023-30590High· 7.5The generateKeys() API function returned from crypto.createDiffieHellman() only generates missing (or outdated) keys, that is, it only generates a private key if none has been set yet, but the function is also needed to compute the corre…
CVE-2023-30585High· 7.5A vulnerability has been identified in the Node.js (.msi version) installation process, specifically affecting Windows users who install Node.js using the .msi installer
CVE-2023-30589High· 7.5The llhttp parser in the http module in Node v20.2.0 does not strictly use the CRLF sequence to delimit HTTP requests
CVE-2018-12121High· 7.5Node.js: All versions prior to Node.js 6.15.0, 8.14.0, 10.14.0 and 11.3.0: Denial of Service with large HTTP headers: By using a combination of many requests with maximum sized headers (almost 80 KB per connection), and carefully timed c…
CVE-2018-12122High· 7.5Node.js: All versions prior to Node.js 6.15.0, 8.14.0, 10.14.0 and 11.3.0: Slowloris HTTP Denial of Service: An attacker can cause a Denial of Service (DoS) by sending headers very slowly keeping HTTP or HTTPS connections and associated …