QID 980955
QID 980955: Nodejs (npm) Security Update for macaddress (GHSA-pp57-mqmh-44h7)
All versions of `macaddress` are vulnerable to command injection. For this vulnerability to be exploited an attacker needs to control the `iface` argument to the `one` method.
## Recommendation
Update to version 0.2.9 or later.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-pp57-mqmh-44h7 for updates pertaining to this vulnerability.
Vendor References
- GHSA-pp57-mqmh-44h7 -
github.com/advisories/GHSA-pp57-mqmh-44h7
CVEs related to QID 980955
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-pp57-mqmh-44h7 | macaddress |
|