Security Advisory

CVE-2015-9242

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-05-29 20:00:00
Last updated 2024-09-17 03:12:59
Assigner hackerone
State PUBLISHED

Description

Certain input strings when passed to new Date() or Date.parse() in ecstatic node module before 1.4.0 will cause v8 to raise an exception. This leads to a crash and denial of service in ecstatic when this input is passed into the server via the If-Modified-Since header.