CVE-2022-25324

All versions of package bignum are vulnerable to Denial of Service (DoS) due to a type-check exception in V8, when verifying the type of the second argument to the .powm function, V8 will crash regardless of Node try/catch blocks.
Configurations

Configuration 1

cpe:2.3:a:bignum_project:bignum:*:*:*:*:*:node.js:*:*

Information

Published : 2022-05-06 08:15

Updated : 2022-05-17 04:42


NVD link : CVE-2022-25324

Mitre link : CVE-2022-25324

Products Affected
No products.
CWE
CWE-1321

Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')