CVE-2014-7191

EPSS 0.69%

Denial-of-Service Memory Exhaustion in qs

發布日:2017/10/24修改日:2023/11/8
也稱為:GHSA-jjv7-qpx3-h62qDEBIAN-CVE-2014-7191

描述

Versions prior to 1.0 of `qs` are affected by a denial of service condition. This condition is triggered by parsing a crafted string that deserializes into very large sparse arrays, resulting in the process running out of memory and eventually crashing. ## Recommendation Update to version 1.0.0 or later.

受影響套件(2)

參考連結(14)