Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2018-12115
Description:In all versions of Node.js prior to 6.14.4, 8.11.4 and 10.9.0 when used with UCS-2 encoding (recognized by Node.js under the names `'ucs2'`, `'ucs-2'`, `'utf16le'` and `'utf-16le'`), `Buffer#write()` can be abused to write outside of the bounds of a single `Buffer`. Writes that start from the second-to-last position of a buffer cause a miscalculation of the maximum length of the input bytes to be written.
Test IDs: 1.3.6.1.4.1.25623.1.0.112362   1.3.6.1.4.1.25623.1.0.112361  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2018-12115
BugTraq ID: 105127
http://www.securityfocus.com/bid/105127
https://security.gentoo.org/glsa/202003-48
RedHat Security Advisories: RHSA-2018:2552
https://access.redhat.com/errata/RHSA-2018:2552
RedHat Security Advisories: RHSA-2018:2553
https://access.redhat.com/errata/RHSA-2018:2553
RedHat Security Advisories: RHSA-2018:2944
https://access.redhat.com/errata/RHSA-2018:2944
RedHat Security Advisories: RHSA-2018:2949
https://access.redhat.com/errata/RHSA-2018:2949
RedHat Security Advisories: RHSA-2018:3537
https://access.redhat.com/errata/RHSA-2018:3537




© 1998-2025 E-Soft Inc. All rights reserved.