Vulnerability Bulletins |
IBM Security Bulletin: Current Releases of IBM® SDK for Node.js™ are affected by CVE-2015-8855 |
|
| Affected software | IBM |
|
Denial of service vulnerability in module semver, used by the npm package management toolCVE(s): CVE-2015-8855Affected product(s) and affected version(s):These vulnerabilities affect IBM SDK for Node.js v1.1.0.20 and previous releases. These vulnerabilities affect IBM SDK for Node.js v1.2.0.1 and previous releases. Refer to the following reference URLs for remediation and additional vulnerability details:Source Bulletin: http://www.ibm.com/support/docview.wss?uid=swg21982852X-Force Database: More info: https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_current_releases_of_ibm_sdk_for_node_js_are_affected_by_cve_2015_8855?lang=en_us |
|






