Node.js has released critical security updates to address vulnerabilities that could cause server crashes and disrupt services. These fixes include improvements to cryptographic error handling, HTTP parsing, and resource cleanup.
Affected: Node.js applications and servers using affected versions.
Affected: Node.js applications and servers using affected versions.
Keypoints
- Node.js released security updates to fix critical vulnerabilities impacting server stability.
- The updates address issues related to cryptographic errors, HTTP request parsing, and resource cleanup.
- Exploiting these vulnerabilities could lead to server crashes and denial-of-service conditions.
- The patched versions include 20.19.2 βIronβ, 22.15.1 βJodβ, 23.11.1, and 24.0.2.
- System administrators are advised to update promptly and test thoroughly before deploying to production.
Read More: https://gbhackers.com/node-js-vulnerability-enables-attackers-to-crash-processes/