Rewterz
Rewterz Threat Alert – ProxyLogon Flaw, Evil Emails, SQL Injections Used Open Backdoors
August 26, 2021
Rewterz
Rewterz Threat Alert – Hive Ransomware – Active IOCs
August 26, 2021

Rewterz Threat Advisory – CVE-2021-39157 – Node.js detect-character-encoding Module Vulnerability

Severity

High

Analysis Summary

CVE-2021-39157

Node.js detect-character-encoding module is vulnerable to a denial of service, caused by improper handling of exceptional conditions. By sending a specially-crafted request, a remote attacker could exploit this vulnerability to causes the Node.js process to crash.

Impact

  • Denial of Services

Affected Vendors

Node.js

Affected Products

  • Node.js detect-character-encoding 0.6.0

Remediation

Upgrade to the latest version of detect-character-encoding, available from the detect-character-encoding GIT Repository.

https://github.com/sonicdoe/detect-character-encoding/security/advisories/GHSA-jqfh-8hw5-fqjr