ELBA-2025-36203

ELBA-2025-36203 - yarnpkg Bug Fix update

Type:BUG
Impact:NA
Release Date:2025-07-04

Description


[1.22.22-9]
- Add CVE-2025-6545_6547.prebundle.patch and regenerate bundle. Fixes CVE-2025-6545 and CVE-2025-6547.

[1.22.22-8]
- Refresh bundle tarball for CVE-2025-48387

[1.22.22-7]
- Fix CVE-2024-12905

[1.22.22-6]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild

[1.22.22-5]
- Update bundled ws (CVE-2024-37890)

[1.22.22-4]
- Update bundled elliptic (CVE-2024-48949)

[1.22.22-3]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild

[1.22.22-2]
- Backport patch for CVE-2024-4067

[1.22.22-1]
- Update to 1.22.22

[1.22.21-2]
- Backport patches for CVE-2022-37599, CVE-2023-26136, CVE-2023-46234

[1.22.21-1]
- Update to 1.22.21

[1.22.19-8]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild

[1.22.19-7]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild




Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) yarnpkg-1.22.22-9.el9.src.rpm9ebfef82863504ea4a801b5cfbf625af338e8b85bc70e96d84293b276f417f77-ol9_aarch64_developer_EPEL
yarnpkg-1.22.22-9.el9.aarch64.rpm0d5b8656e627626a6484296494e18d69550d66fa8c9a920001acf882a6d3e19f-ol9_aarch64_developer_EPEL
Oracle Linux 9 (x86_64) yarnpkg-1.22.22-9.el9.src.rpm9ebfef82863504ea4a801b5cfbf625af338e8b85bc70e96d84293b276f417f77-ol9_x86_64_developer_EPEL
yarnpkg-1.22.22-9.el9.x86_64.rpm9cd7fe08f7e2559ce074eb1fab408449dd39dffedc12d46e1c5c2c6ba3f3b8df-ol9_x86_64_developer_EPEL



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete