ELSA-2024-2778

ELSA-2024-2778 - nodejs:20 security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2024-05-09

Description


nodejs
[1:20.12.2-2]
- Backport nghttp2 patch for CVE-2024-28182

[1:20.12.2-1]
- Rebase to version 20.12.0
Fixes: CVE-2024-27983 CVE-2024-27982 CVE-2024-22025 (node)
Fixes: CVE-2024-25629 (c-ares)

nodejs-nodemon
nodejs-packaging


Related CVEs


CVE-2024-27983
CVE-2024-27982
CVE-2024-28182
CVE-2024-25629
CVE-2024-22025

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) nodejs-20.12.2-2.module+el8.9.0+90318+7fb2e04b.src.rpm78ba101a1b4be01e5612e2060f91a651-ol8_aarch64_appstream
nodejs-nodemon-3.0.1-1.module+el8.9.0+90082+b6a613a6.src.rpm8823b3ba03f2d2b6482cadf979761fab-ol8_aarch64_appstream
nodejs-packaging-2021.06-4.module+el8.9.0+90082+b6a613a6.src.rpmaed583db9cb17582252ec5ad0cde08ee-ol8_aarch64_appstream
nodejs-20.12.2-2.module+el8.9.0+90318+7fb2e04b.aarch64.rpm3c7630e411c353c74293ad3152cfea89-ol8_aarch64_appstream
nodejs-devel-20.12.2-2.module+el8.9.0+90318+7fb2e04b.aarch64.rpmfe809903433b4bc7f4614725eb0a11e1-ol8_aarch64_appstream
nodejs-docs-20.12.2-2.module+el8.9.0+90318+7fb2e04b.noarch.rpm6968a3e5e1e39d1e031aef1ccccf2396-ol8_aarch64_appstream
nodejs-full-i18n-20.12.2-2.module+el8.9.0+90318+7fb2e04b.aarch64.rpmc005d9b0b51b3033fac1e7c00792bcf7-ol8_aarch64_appstream
nodejs-nodemon-3.0.1-1.module+el8.9.0+90082+b6a613a6.noarch.rpme5044ce8ac5806796bcb40ab1f198467-ol8_aarch64_appstream
nodejs-packaging-2021.06-4.module+el8.9.0+90082+b6a613a6.noarch.rpma91d756e7976b62e2b07b52dea5bab1f-ol8_aarch64_appstream
nodejs-packaging-bundler-2021.06-4.module+el8.9.0+90082+b6a613a6.noarch.rpmb246773ec20b42270d4b5aa48fa74e98-ol8_aarch64_appstream
npm-10.5.0-1.20.12.2.2.module+el8.9.0+90318+7fb2e04b.aarch64.rpm17d83b1f823b6fcc8cb280c3baffc8bc-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) nodejs-20.12.2-2.module+el8.9.0+90318+7fb2e04b.src.rpm78ba101a1b4be01e5612e2060f91a651-ol8_x86_64_appstream
nodejs-nodemon-3.0.1-1.module+el8.9.0+90082+b6a613a6.src.rpm8823b3ba03f2d2b6482cadf979761fab-ol8_x86_64_appstream
nodejs-packaging-2021.06-4.module+el8.9.0+90082+b6a613a6.src.rpmaed583db9cb17582252ec5ad0cde08ee-ol8_x86_64_appstream
nodejs-20.12.2-2.module+el8.9.0+90318+7fb2e04b.x86_64.rpm379fccf23043c1de196e9153a34c0eed-ol8_x86_64_appstream
nodejs-devel-20.12.2-2.module+el8.9.0+90318+7fb2e04b.x86_64.rpm63b6067d906695689ed59d82c9feed57-ol8_x86_64_appstream
nodejs-docs-20.12.2-2.module+el8.9.0+90318+7fb2e04b.noarch.rpm6968a3e5e1e39d1e031aef1ccccf2396-ol8_x86_64_appstream
nodejs-full-i18n-20.12.2-2.module+el8.9.0+90318+7fb2e04b.x86_64.rpmf8fc15383ea62d20e267c00ae134a5ac-ol8_x86_64_appstream
nodejs-nodemon-3.0.1-1.module+el8.9.0+90082+b6a613a6.noarch.rpme5044ce8ac5806796bcb40ab1f198467-ol8_x86_64_appstream
nodejs-packaging-2021.06-4.module+el8.9.0+90082+b6a613a6.noarch.rpma91d756e7976b62e2b07b52dea5bab1f-ol8_x86_64_appstream
nodejs-packaging-bundler-2021.06-4.module+el8.9.0+90082+b6a613a6.noarch.rpmb246773ec20b42270d4b5aa48fa74e98-ol8_x86_64_appstream
npm-10.5.0-1.20.12.2.2.module+el8.9.0+90318+7fb2e04b.x86_64.rpm1f385a99ab52eabad9e618f4995998b0-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete