Node.js.http-cache-semantics.cache-control.DoS

description-logoDescription

This indicates an attack attempt to exploit a Denial of Service Vulnerability in Node.js http-cache-semantics package.
The vulnerability is due to improper handling of user-supplied data. The attacker can exploits this vulnerability via a maliciously crafted request header values. Successful exploitation may lead to a denial of service condition.

affected-products-logoAffected Products

Node.js http-cache-semantics before version 4.1.1

Impact logoImpact

Denial of Service: Remote attackers can crash vulnerable systems.

recomended-action-logoRecommended Actions

Apply the most recent upgrade or patch from the vendor.
https://github.com/kornelski/http-cache-semantics

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2023-06-12 24.574 Default_action:pass:drop
2023-05-30 23.564