ELSA-2022-6448

ELSA-2022-6448 - nodejs:14 security and bug fix update

Type:SECURITY
Severity:MODERATE
Release Date:2022-09-15

Description


nodejs
[1:14.20.0-2]
- Replace with_* macros with RPM confitionals
- Unify configure calls into single command
- Refactor bootstrap-related parts
- Decouple dependency bundling from bootstrapping
- Resolves: RHBZ#2111417

[1:14.20.0-1]
- Rebase to latest version
- Resolves: RHBZ#2106367
- CVE fixes for CVE-2022-32212/3/4/5
- Resolves: #2109576, #2109579, #2109582, #2109585

[1:14.18.2-3]
- Resolves: RHBZ#2029519
- Add missing BZ to changelog

nodejs-nodemon
[2.0.19-2]
- Switched from autosetup
- Removed CODE_OF_CONDUCT.md and faq.md which is not present in npmjs package, might switch to GH sources in the future
- Resolves: RHBZ#2109919

[2.0.19-1]
- Rebase to 2.0.19
- Resolves CVE-2022-33987
- Resolves: RHBZ#2109919


Related CVEs


CVE-2022-32212
CVE-2022-32213
CVE-2022-33987
CVE-2022-32214
CVE-2022-32215

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) nodejs-14.20.0-2.module+el8.6.0+20729+8fb6d84e.src.rpm2a73ece377ad9ed6242ce41de4943178-
nodejs-nodemon-2.0.19-2.module+el8.6.0+20729+8fb6d84e.src.rpmc9a956f7f7d25c5b09ef623adc46a909-
nodejs-packaging-23-3.module+el8.3.0+7818+6cd30d85.src.rpmd2fc2d00152ef21b3fb510e367de840d-
nodejs-14.20.0-2.module+el8.6.0+20729+8fb6d84e.aarch64.rpm84244f0f72f6349daad044292c8bab8b-
nodejs-devel-14.20.0-2.module+el8.6.0+20729+8fb6d84e.aarch64.rpme92ca939fb76d8193034b35ba9aefd17-
nodejs-docs-14.20.0-2.module+el8.6.0+20729+8fb6d84e.noarch.rpm5b48f781b8d4bff82daabe077b1977c4-
nodejs-full-i18n-14.20.0-2.module+el8.6.0+20729+8fb6d84e.aarch64.rpme2a1d887dd389c1c7683b18d71bcb29b-
nodejs-nodemon-2.0.19-2.module+el8.6.0+20729+8fb6d84e.noarch.rpm62e213feb6e3c942b642dea84764930a-
nodejs-packaging-23-3.module+el8.3.0+7818+6cd30d85.noarch.rpm851c39fa41e339cf79659ca2637f8b18-
npm-6.14.17-1.14.20.0.2.module+el8.6.0+20729+8fb6d84e.aarch64.rpmbc5d98cc8b6a6bd37886f1f17d6f12d7-
Oracle Linux 8 (x86_64) nodejs-14.20.0-2.module+el8.6.0+20729+8fb6d84e.src.rpm2a73ece377ad9ed6242ce41de4943178-
nodejs-nodemon-2.0.19-2.module+el8.6.0+20729+8fb6d84e.src.rpmc9a956f7f7d25c5b09ef623adc46a909-
nodejs-packaging-23-3.module+el8.3.0+7818+6cd30d85.src.rpmd2fc2d00152ef21b3fb510e367de840d-
nodejs-14.20.0-2.module+el8.6.0+20729+8fb6d84e.x86_64.rpm0e3e5c29e510f0aaffea03405db35fd4-
nodejs-devel-14.20.0-2.module+el8.6.0+20729+8fb6d84e.x86_64.rpmfa4b10e092baf6af68012632fa76add3-
nodejs-docs-14.20.0-2.module+el8.6.0+20729+8fb6d84e.noarch.rpm5b48f781b8d4bff82daabe077b1977c4-
nodejs-full-i18n-14.20.0-2.module+el8.6.0+20729+8fb6d84e.x86_64.rpmf42b0f1da1659702734661d87061fd62-
nodejs-nodemon-2.0.19-2.module+el8.6.0+20729+8fb6d84e.noarch.rpm62e213feb6e3c942b642dea84764930a-
nodejs-packaging-23-3.module+el8.3.0+7818+6cd30d85.noarch.rpm851c39fa41e339cf79659ca2637f8b18-
npm-6.14.17-1.14.20.0.2.module+el8.6.0+20729+8fb6d84e.x86_64.rpmdc842d699ecf67fedef7c39270fc2912-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete