Vulnerabilities > CVE-2014-3742 - Resource Management Errors vulnerability in Spumko Project Hapi Server Framework 2.0.0/2.1.1/2.1.2
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
The hapi server framework 2.0.x and 2.1.x before 2.2.0 for Node.js allows remote attackers to cause a denial of service (file descriptor consumption and process crash) via unspecified vectors.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |
Common Weakness Enumeration (CWE)
References
- http://www.openwall.com/lists/oss-security/2014/05/13/1
- http://www.openwall.com/lists/oss-security/2014/05/13/1
- http://www.openwall.com/lists/oss-security/2014/05/15/2
- http://www.openwall.com/lists/oss-security/2014/05/15/2
- https://github.com/spumko/hapi/issues/1427
- https://github.com/spumko/hapi/issues/1427
- https://nodesecurity.io/advisories/hapi_File_descriptor_leak_DoS_vulnerability
- https://nodesecurity.io/advisories/hapi_File_descriptor_leak_DoS_vulnerability