Description
The hapi server framework 2.0.x and 2.1.x before 2.2.0 for Node.js allows remote attackers to cause a denial of service (file descriptor consumption and process crash) via unspecified vectors.
Remediation
References
http://www.openwall.com/lists/oss-security/2014/05/13/1
http://www.openwall.com/lists/oss-security/2014/05/15/2
https://github.com/spumko/hapi/issues/1427
https://nodesecurity.io/advisories/hapi_File_descriptor_leak_DoS_vulnerability
Related Vulnerabilities
CVE-2009-0217 Vulnerability in maven package org.apache.santuario:xmlsec
CVE-2021-22112 Vulnerability in maven package org.springframework.security:spring-security-core
CVE-2022-41251 Vulnerability in maven package org.jenkins-ci.plugins:apprenda
CVE-2023-33265 Vulnerability in maven package com.hazelcast:hazelcast
CVE-2017-2650 Vulnerability in maven package cprice404:pipeline-classpath