Description
The hapi server framework 2.0.x and 2.1.x before 2.2.0 for Node.js allows remote attackers to cause a denial of service (file descriptor consumption and process crash) via unspecified vectors.
Remediation
References
http://www.openwall.com/lists/oss-security/2014/05/13/1
http://www.openwall.com/lists/oss-security/2014/05/15/2
https://github.com/spumko/hapi/issues/1427
https://nodesecurity.io/advisories/hapi_File_descriptor_leak_DoS_vulnerability
Related Vulnerabilities
CVE-2019-10369 Vulnerability in maven package org.jenkins-ci.plugins:jclouds-jenkins
CVE-2020-24554 Vulnerability in maven package com.liferay.release.portal.bom
CVE-2023-26136 Vulnerability in maven package org.webjars.npm:tough-cookie
CVE-2020-5404 Vulnerability in maven package io.projectreactor.netty:reactor-netty
CVE-2020-1956 Vulnerability in maven package org.apache.kylin:kylin-core-common