ELSA-2023-3586

ELSA-2023-3586 - nodejs security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2023-06-15

Description


[1:16.19.1-2]
- Update bundled c-ares to 1.19.1
Resolves: CVE-2023-31124 CVE-2023-31130 CVE-2023-31147 CVE-2023-32067

[1:16.19.1-1]
- Rebase to 16.19.1
- Resolves: rhbz#2153714
- Resolves: CVE-2023-23918 CVE-2023-23919 CVE-2023-23936 CVE-2023-24807 CVE-2023-23920
- Resolves: CVE-2022-25881 CVE-2022-4904

[1:16.18.1-3]
- Update sources of undici WASM blobs
Resolves: rhbz#2151617

[1:16.18.1-2]
- Add back libs and v8-devel subpackages
- Related: RHBZ#2121126
- Record previously fixed CVE
- Resolves: CVE-2021-44906

[1:16.18.1-1]
- Rebase + CVEs
- Resolves: #2142808
- Resolves: #2142826, #2131745, #2142855

[16.17.1-1]
- Rebase to version 16.17.1
Resolves: CVE-2022-35255 CVE-2022-35256

[16.16.0-1]
- Rebase to version 16.16.0
Resolves: RHBZ#2106290
Resolves: CVE-2022-32212 CVE-2022-32213 CVE-2022-32214 CVE-2022-32215
Resolves: CVE-2022-29244

[16.14.0-5]
- Decouple dependency bundling from bootstrapping


Related CVEs


CVE-2023-31124
CVE-2023-32067
CVE-2023-31147
CVE-2023-31130

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 9 (aarch64) nodejs-16.19.1-2.el9_2.src.rpm984f9ea0bcaa4aa820b7490483ac0f8f-
nodejs-16.19.1-2.el9_2.aarch64.rpm4f4333e885a93c9fc4e1c39f37a4c5bf-
nodejs-docs-16.19.1-2.el9_2.noarch.rpm70b68ec7d24fffa64c344255125b1ba5-
nodejs-full-i18n-16.19.1-2.el9_2.aarch64.rpmd578864ec39e78e219e4661148bee727-
nodejs-libs-16.19.1-2.el9_2.aarch64.rpm2d2373afc827a19efc04c9e75b15ba11-
npm-8.19.3-1.16.19.1.2.el9_2.aarch64.rpmb70884f3d738fdf696a82ee4a8cd0de3-
Oracle Linux 9 (x86_64) nodejs-16.19.1-2.el9_2.src.rpm984f9ea0bcaa4aa820b7490483ac0f8f-
nodejs-16.19.1-2.el9_2.x86_64.rpm297aa61e03daa43cd1f625b8c7cd4c33-
nodejs-docs-16.19.1-2.el9_2.noarch.rpm70b68ec7d24fffa64c344255125b1ba5-
nodejs-full-i18n-16.19.1-2.el9_2.x86_64.rpmd8be54e273354f5c77e1e8fd9a2f69ca-
nodejs-libs-16.19.1-2.el9_2.i686.rpma05983443449d78763925de5cc4d7191-
nodejs-libs-16.19.1-2.el9_2.x86_64.rpm35fc7b6cdb34934049802abec7cafefd-
npm-8.19.3-1.16.19.1.2.el9_2.x86_64.rpm9c164e9e06d1bcef14351f44905834a9-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete