Description
atob 2.0.3 and earlier allocates uninitialized Buffers when number is passed in input on Node.js 4.x and below.
Remediation
References
https://hackerone.com/reports/321686
https://security.netapp.com/advisory/ntap-20230622-0009/
Related Vulnerabilities
CVE-2022-29546 Vulnerability in maven package net.sourceforge.htmlunit:neko-htmlunit
CVE-2022-23059 Vulnerability in maven package com.shopizer:sm-shop-model
CVE-2020-17479 Vulnerability in npm package jpv
CVE-2017-12615 Vulnerability in maven package org.apache.tomcat:tomcat-catalina
CVE-2020-28052 Vulnerability in maven package bouncycastle:bcprov-jdk14