"-Synchronized-Data."

This commit is contained in:
CVE Team 2019-07-19 04:00:48 +00:00
parent cc56c8b99c
commit 2ad10b3ac9
No known key found for this signature in database
GPG Key ID: 0DA1F9F56BC892E8

View File

@ -34,7 +34,7 @@
"description_data": [
{
"lang": "eng",
"value": "lodash prior to 4.7.11 is affected by: CWE-400: Uncontrolled Resource Consumption. The impact is: Denial of service. The component is: Date handler. The attack vector is: Attacker provides very long strings, which the library attempts to match using a regular expression. The fixed version is: 4.7.11."
"value": "lodash prior to 4.17.11 is affected by: CWE-400: Uncontrolled Resource Consumption. The impact is: Denial of service. The component is: Date handler. The attack vector is: Attacker provides very long strings, which the library attempts to match using a regular expression. The fixed version is: 4.17.11."
}
]
},
@ -61,6 +61,11 @@
"url": "https://github.com/lodash/lodash/issues/3359",
"refsource": "MISC",
"name": "https://github.com/lodash/lodash/issues/3359"
},
{
"refsource": "CONFIRM",
"name": "https://github.com/lodash/lodash/wiki/Changelog",
"url": "https://github.com/lodash/lodash/wiki/Changelog"
}
]
}