ELSA-2023-7205

ELSA-2023-7205 - nodejs:20 security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2023-11-22

Description


nodejs
[1:20.8.1-1]
- Update node and nghttp
- Add fips patch
- Fixes CVE-2023-44487 (nghttp)
- Fixes CVE-2023-45143, CVE-2023-39331, CVE-2023-39332, CVE-2023-38552, CVE-2023-39333

nodejs-nodemon
nodejs-packaging


Related CVEs


CVE-2023-39332
CVE-2023-45143
CVE-2023-38552
CVE-2023-39333
CVE-2023-44487
CVE-2023-39331

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) nodejs-20.8.1-1.module+el8.9.0+90082+b6a613a6.src.rpm63e211fe4ba5d99af68d4587d779c9a5c60e9cf0326fd49fd667b48edc229fb0-ol8_aarch64_appstream
nodejs-nodemon-3.0.1-1.module+el8.9.0+90082+b6a613a6.src.rpm5af5ab64b8c69103fd5915a18f47f09cdb25bbe91fb689714198dc60528a64f5-ol8_aarch64_appstream
nodejs-packaging-2021.06-4.module+el8.9.0+90082+b6a613a6.src.rpm19842ffb93a56eca6910e48bc1e34d3ffe901f621eecf5d184b53029cccd5ecd-ol8_aarch64_appstream
nodejs-20.8.1-1.module+el8.9.0+90082+b6a613a6.aarch64.rpm3b23d5b7ba8320d64a0b567ac79b8ef8118d36fa0fb6f2fee0ddb7081046f6ac-ol8_aarch64_appstream
nodejs-devel-20.8.1-1.module+el8.9.0+90082+b6a613a6.aarch64.rpm6bcb6e455b47a212601a93a30bad0a33ae93792b83abef2bf9e2ed25282588db-ol8_aarch64_appstream
nodejs-docs-20.8.1-1.module+el8.9.0+90082+b6a613a6.noarch.rpm3a3c1c0dc3d4150bf5dcde9e03b08147ef76bc8f10269c7e8531614127ace16a-ol8_aarch64_appstream
nodejs-full-i18n-20.8.1-1.module+el8.9.0+90082+b6a613a6.aarch64.rpm0fd822199fdb1bc6b8f84c60b9e8fc6e4782a939ddfcddcc2f1436c03cfbc286-ol8_aarch64_appstream
nodejs-nodemon-3.0.1-1.module+el8.9.0+90082+b6a613a6.noarch.rpm06f6b1a64054104a94cfab2d8f929121d2ab069834cc241e655d89b3e35ba97d-ol8_aarch64_appstream
nodejs-packaging-2021.06-4.module+el8.9.0+90082+b6a613a6.noarch.rpmdd263058fa65d2bf8eaab8167aa0a5cdc18a5c4a30f1130394fab369c7d0a902-ol8_aarch64_appstream
nodejs-packaging-bundler-2021.06-4.module+el8.9.0+90082+b6a613a6.noarch.rpm691cc142ecc0ed0ddc41ecfcddf6c8d4fbfb39504cd21d8552d7756a10ccfb7f-ol8_aarch64_appstream
npm-10.1.0-1.20.8.1.1.module+el8.9.0+90082+b6a613a6.aarch64.rpm7aa6a61af4b3b6abedd6c6628edd3b437b7342e7f6c7b8e8d44a0d369926e085-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) nodejs-20.8.1-1.module+el8.9.0+90082+b6a613a6.src.rpm63e211fe4ba5d99af68d4587d779c9a5c60e9cf0326fd49fd667b48edc229fb0-ol8_x86_64_appstream
nodejs-nodemon-3.0.1-1.module+el8.9.0+90082+b6a613a6.src.rpm5af5ab64b8c69103fd5915a18f47f09cdb25bbe91fb689714198dc60528a64f5-ol8_x86_64_appstream
nodejs-packaging-2021.06-4.module+el8.9.0+90082+b6a613a6.src.rpm19842ffb93a56eca6910e48bc1e34d3ffe901f621eecf5d184b53029cccd5ecd-ol8_x86_64_appstream
nodejs-20.8.1-1.module+el8.9.0+90082+b6a613a6.x86_64.rpm6477e8b5b4094c7e2604d4d70c666c1e49f3ef29f88c3f14fe5eeaea19fc9b9f-ol8_x86_64_appstream
nodejs-devel-20.8.1-1.module+el8.9.0+90082+b6a613a6.x86_64.rpm2033ea621dd7c368e07b068b1f7f71f8542415172374d6076dc1a26e285e9efc-ol8_x86_64_appstream
nodejs-docs-20.8.1-1.module+el8.9.0+90082+b6a613a6.noarch.rpm3a3c1c0dc3d4150bf5dcde9e03b08147ef76bc8f10269c7e8531614127ace16a-ol8_x86_64_appstream
nodejs-full-i18n-20.8.1-1.module+el8.9.0+90082+b6a613a6.x86_64.rpm918709f018897a3a97c75eaf0291e5e813042ccef3513a0a6993e7ce0ee5b750-ol8_x86_64_appstream
nodejs-nodemon-3.0.1-1.module+el8.9.0+90082+b6a613a6.noarch.rpm06f6b1a64054104a94cfab2d8f929121d2ab069834cc241e655d89b3e35ba97d-ol8_x86_64_appstream
nodejs-packaging-2021.06-4.module+el8.9.0+90082+b6a613a6.noarch.rpmdd263058fa65d2bf8eaab8167aa0a5cdc18a5c4a30f1130394fab369c7d0a902-ol8_x86_64_appstream
nodejs-packaging-bundler-2021.06-4.module+el8.9.0+90082+b6a613a6.noarch.rpm691cc142ecc0ed0ddc41ecfcddf6c8d4fbfb39504cd21d8552d7756a10ccfb7f-ol8_x86_64_appstream
npm-10.1.0-1.20.8.1.1.module+el8.9.0+90082+b6a613a6.x86_64.rpm2ba467cdad1c693c00e93d3c532e6b75487cabe6519d04077c60426a7cf3b2bd-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete