ELSA-2024-2778

ELSA-2024-2778 - nodejs:20 security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2024-05-09

Description


nodejs
[1:20.12.2-2]
- Backport nghttp2 patch for CVE-2024-28182

[1:20.12.2-1]
- Rebase to version 20.12.0
Fixes: CVE-2024-27983 CVE-2024-27982 CVE-2024-22025 (node)
Fixes: CVE-2024-25629 (c-ares)

nodejs-nodemon
nodejs-packaging


Related CVEs


CVE-2024-27983
CVE-2024-27982
CVE-2024-28182
CVE-2024-25629
CVE-2024-22025

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) nodejs-20.12.2-2.module+el8.9.0+90318+7fb2e04b.src.rpme96d736bb8f2cfd0687c751d8de36f567d86e63f50a47b6cbab90487a6449539-ol8_aarch64_appstream
nodejs-nodemon-3.0.1-1.module+el8.9.0+90082+b6a613a6.src.rpm5af5ab64b8c69103fd5915a18f47f09cdb25bbe91fb689714198dc60528a64f5-ol8_aarch64_appstream
nodejs-packaging-2021.06-4.module+el8.9.0+90082+b6a613a6.src.rpm19842ffb93a56eca6910e48bc1e34d3ffe901f621eecf5d184b53029cccd5ecd-ol8_aarch64_appstream
nodejs-20.12.2-2.module+el8.9.0+90318+7fb2e04b.aarch64.rpmea8c8ca2bba4b2ff3aee2bd1de99df885d008dd2c66e5a50f308414e9d256a03-ol8_aarch64_appstream
nodejs-devel-20.12.2-2.module+el8.9.0+90318+7fb2e04b.aarch64.rpm1bb2c8ecf3cc8a25e49b71ef181a653c1a54611a44ee86e3f3232f57deece394-ol8_aarch64_appstream
nodejs-docs-20.12.2-2.module+el8.9.0+90318+7fb2e04b.noarch.rpm197d27072021b1bb5be867c62804a86094fd0587dad2f33e93635dce59604311-ol8_aarch64_appstream
nodejs-full-i18n-20.12.2-2.module+el8.9.0+90318+7fb2e04b.aarch64.rpmaeabd1d60e630f48f31e65449f26f958cf42b9e0be35f5319470835a16ebb068-ol8_aarch64_appstream
nodejs-nodemon-3.0.1-1.module+el8.9.0+90082+b6a613a6.noarch.rpm06f6b1a64054104a94cfab2d8f929121d2ab069834cc241e655d89b3e35ba97d-ol8_aarch64_appstream
nodejs-packaging-2021.06-4.module+el8.9.0+90082+b6a613a6.noarch.rpmdd263058fa65d2bf8eaab8167aa0a5cdc18a5c4a30f1130394fab369c7d0a902-ol8_aarch64_appstream
nodejs-packaging-bundler-2021.06-4.module+el8.9.0+90082+b6a613a6.noarch.rpm691cc142ecc0ed0ddc41ecfcddf6c8d4fbfb39504cd21d8552d7756a10ccfb7f-ol8_aarch64_appstream
npm-10.5.0-1.20.12.2.2.module+el8.9.0+90318+7fb2e04b.aarch64.rpm07b3c333734e9560a2a44cbac39b2ae311cfe2f5076dc3e21ce2ba703c5094c6-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) nodejs-20.12.2-2.module+el8.9.0+90318+7fb2e04b.src.rpme96d736bb8f2cfd0687c751d8de36f567d86e63f50a47b6cbab90487a6449539-ol8_x86_64_appstream
nodejs-nodemon-3.0.1-1.module+el8.9.0+90082+b6a613a6.src.rpm5af5ab64b8c69103fd5915a18f47f09cdb25bbe91fb689714198dc60528a64f5-ol8_x86_64_appstream
nodejs-packaging-2021.06-4.module+el8.9.0+90082+b6a613a6.src.rpm19842ffb93a56eca6910e48bc1e34d3ffe901f621eecf5d184b53029cccd5ecd-ol8_x86_64_appstream
nodejs-20.12.2-2.module+el8.9.0+90318+7fb2e04b.x86_64.rpm7e098509e31ad0ee3deb433d665a36aa618c26be9a538a936710758f58f4a9a6-ol8_x86_64_appstream
nodejs-devel-20.12.2-2.module+el8.9.0+90318+7fb2e04b.x86_64.rpm6206ec61e6b62778ca81a568b48c8ee90f83f94a89794bf9ca156a497aa608b5-ol8_x86_64_appstream
nodejs-docs-20.12.2-2.module+el8.9.0+90318+7fb2e04b.noarch.rpm197d27072021b1bb5be867c62804a86094fd0587dad2f33e93635dce59604311-ol8_x86_64_appstream
nodejs-full-i18n-20.12.2-2.module+el8.9.0+90318+7fb2e04b.x86_64.rpmb41b90847654e26589204fa4e617c5099ce09820ca7ce06925e69c8590093ab8-ol8_x86_64_appstream
nodejs-nodemon-3.0.1-1.module+el8.9.0+90082+b6a613a6.noarch.rpm06f6b1a64054104a94cfab2d8f929121d2ab069834cc241e655d89b3e35ba97d-ol8_x86_64_appstream
nodejs-packaging-2021.06-4.module+el8.9.0+90082+b6a613a6.noarch.rpmdd263058fa65d2bf8eaab8167aa0a5cdc18a5c4a30f1130394fab369c7d0a902-ol8_x86_64_appstream
nodejs-packaging-bundler-2021.06-4.module+el8.9.0+90082+b6a613a6.noarch.rpm691cc142ecc0ed0ddc41ecfcddf6c8d4fbfb39504cd21d8552d7756a10ccfb7f-ol8_x86_64_appstream
npm-10.5.0-1.20.12.2.2.module+el8.9.0+90318+7fb2e04b.x86_64.rpm752869af078e12f5a5ba66c3ffbef1931e838e8cfd99dbbb6dad9d00db272079-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete