PT-2023-10617 · Debug-Js · Debug-Js

CVE-2017-20165

·

Publicado

2023-01-09

·

Atualizado

2026-07-10

CVSS v3.1

3.5

Baixa

VetorAV:A/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions debug-js debug versions up to 3.0.x debug-js debug version 2.6.x up to 2.6.8
Description A vulnerability has been found in debug-js debug, affecting the useColors function of the file src/node.js. The manipulation of the argument str leads to inefficient regular expression complexity.
Recommendations For versions up to 3.0.x, upgrade to version 3.1.0 to address this issue. For version 2.6.x, upgrade to version 2.6.9 to address this issue.

Exploit

Correção

DoS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-20165
GHSA-9VVW-CC9W-F27H

Produtos afetados

Debug-Js