cbcvebase.
CVE-2020-8251
published 2020-09-18

CVE-2020-8251: Node.js < 14.11.0 is vulnerable to HTTP denial of service (DoS) attacks based on delayed requests submission which can make the server unable to accept new…

high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
Node.js < 14.11.0 is vulnerable to HTTP denial of service (DoS) attacks based on delayed requests submission which can make the server unable to accept new connections.

Affected

12 ranges
VendorProductVersion rangeFixed in
debiannodejs
fedoraprojectfedora
nodejsnode>= 11.0 < 11.*11.*
nodejsnode>= 13.0 < 13.*13.*
nodejsnode>= 14.0 < 14.11.014.11.0
nodejsnode>= 4.0 < 4.*4.*
nodejsnode>= 5.0 < 5.*5.*
nodejsnode>= 6.0 < 6.*6.*
nodejsnode>= 7.0 < 7.*7.*
nodejsnode>= 8.0 < 8.*8.*
nodejsnode>= 9.0 < 9.*9.*
nodejsnode.js>= 14.0.0 < 14.11.014.11.0