CVE-2022-25324

All versions of package bignum are vulnerable to Denial of Service (DoS) due to a type-check exception in V8, when verifying the type of the second argument to the .powm function, V8 will crash regardless of Node try/catch blocks.
Configurations

Configuration 1 (hide)

cpe:2.3:a:bignum_project:bignum:*:*:*:*:*:node.js:*:*

History

No history.

Information

Published : 2022-05-06 20:15

Updated : 2024-02-28 19:09


NVD link : CVE-2022-25324

Mitre link : CVE-2022-25324

CVE.ORG link : CVE-2022-25324


JSON object : View

Products Affected

bignum_project

  • bignum
CWE
CWE-1321

Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')