[USN-6086-1] minimatch vulnerability

Severity High
Affected Packages 2
CVEs 1

minimatch could be made to crash if it opened a specially crafted input file.

It was discovered that minimatch incorrectly handled certain inputs. If a
user or an automated system were tricked into opening a specially crafted
input file, a remote attacker could possibly use this issue to cause a
denial of service.

Package Affected Version
pkg:deb/ubuntu/node-minimatch?distro=focal < 3.0.4-4ubuntu0.1
pkg:deb/ubuntu/node-minimatch?distro=bionic < 3.0.4-3+deb10u1build0.18.04.1
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/node-minimatch?distro=focal ubuntu node-minimatch < 3.0.4-4ubuntu0.1 focal
Affected pkg:deb/ubuntu/node-minimatch?distro=bionic ubuntu node-minimatch < 3.0.4-3+deb10u1build0.18.04.1 bionic
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...