{ "schema_version": "1.4.0", "id": "GHSA-f7r3-p866-q9qr", "modified": "2022-08-03T16:34:42Z", "published": "2019-06-03T17:27:49Z", "aliases": [], "summary": "ircdkit vulnerable to Denial of Service due to unhandled connection end event", "details": "Versions of `ircdkit` 1.0.3 and prior are vulnerable to a remote denial of service.\n\n\n## Recommendation\n\nUpgrade to version 1.0.4.", "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], "affected": [ { "package": { "ecosystem": "npm", "name": "ircdkit" }, "ranges": [ { "type": "ECOSYSTEM", "events": [ { "introduced": "0" }, { "fixed": "1.0.4" } ] } ], "database_specific": { "last_known_affected_version_range": "<= 1.0.3" } } ], "references": [ { "type": "WEB", "url": "https://github.com/Twipped/ircdkit/issues/1" }, { "type": "WEB", "url": "https://github.com/Twipped/ircdkit/pull/2/commits/595ed02cde517fad57854d2ac2855a09a626e665" }, { "type": "WEB", "url": "https://github.com/Twipped/ircdkit/commit/f0cc6dc913ec17b499fa33a676bb72c624456f2c" }, { "type": "PACKAGE", "url": "https://github.com/Twipped/ircdkit" }, { "type": "WEB", "url": "https://snyk.io/vuln/SNYK-JS-IRCDKIT-173688" }, { "type": "WEB", "url": "https://www.npmjs.com/advisories/735" } ], "database_specific": { "cwe_ids": [ "CWE-400" ], "severity": "LOW", "github_reviewed": true, "github_reviewed_at": "2019-06-03T17:27:33Z", "nvd_published_at": null } }