Description
The hapi server framework 2.0.x and 2.1.x before 2.2.0 for Node.js allows remote attackers to cause a denial of service (file descriptor consumption and process crash) via unspecified vectors.
Remediation
References
http://www.openwall.com/lists/oss-security/2014/05/13/1
http://www.openwall.com/lists/oss-security/2014/05/15/2
https://github.com/spumko/hapi/issues/1427
https://nodesecurity.io/advisories/hapi_File_descriptor_leak_DoS_vulnerability
Related Vulnerabilities
CVE-2018-11537 Vulnerability in maven package org.webjars:angular-jwt
CVE-2017-1000399 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2020-2128 Vulnerability in maven package com.catalogic.ecxjenkins:catalogic-ecx
CVE-2018-1272 Vulnerability in maven package org.springframework:spring-core
CVE-2019-16547 Vulnerability in maven package org.jenkins-ci.plugins:google-compute-engine