ELSA-2024-2853

ELSA-2024-2853 - nodejs:20 security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2024-05-16

Description


nodejs
[1:20.12.2-2]
- Backport nghttp2 patch for CVE-2024-28182

[1:20.12.2-1]
- Rebase to version 20.12.0
Fixes: CVE-2024-27983 CVE-2024-27982 CVE-2024-22025 (node)
Fixes: CVE-2024-25629 (c-ares)

nodejs-nodemon
nodejs-packaging


Related CVEs


CVE-2024-25629
CVE-2024-27983
CVE-2024-27982
CVE-2024-28182
CVE-2024-22025

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) nodejs-20.12.2-2.module+el9.4.0+90322+0b80090c.src.rpm70a1b365af4c5084e3392f028accb52b3c6841cee3746fcc1ce4aa77602b05a3-ol9_aarch64_appstream
nodejs-nodemon-3.0.1-1.module+el9.3.0+90066+12d4a8d7.src.rpm624fb93a1092474a8d4a2d3fe6b7f4edd4c12affe479e931268616b3fe2f381c-ol9_aarch64_appstream
nodejs-packaging-2021.06-4.module+el9.3.0+90066+12d4a8d7.src.rpm745641bc36c893539705f623e95679d4e434457755dc343828ecd12d210428db-ol9_aarch64_appstream
nodejs-20.12.2-2.module+el9.4.0+90322+0b80090c.aarch64.rpm3117754671d1c891d5d583d84e5c865be2597404f510ba91c59c60f3889e141b-ol9_aarch64_appstream
nodejs-devel-20.12.2-2.module+el9.4.0+90322+0b80090c.aarch64.rpm6175f329e6ad09e41674de8211200203edaa8145d6f951703943fda6c5191b1d-ol9_aarch64_appstream
nodejs-docs-20.12.2-2.module+el9.4.0+90322+0b80090c.noarch.rpm60cda6876c9362b62f37ebbd4718cfb2310cd73876cfe7d372b5099d208eed9d-ol9_aarch64_appstream
nodejs-full-i18n-20.12.2-2.module+el9.4.0+90322+0b80090c.aarch64.rpmfdf91b66e574fbb0bfb47f30c041cda6abb6ee4c240254136f64dd03939f0a41-ol9_aarch64_appstream
nodejs-nodemon-3.0.1-1.module+el9.3.0+90066+12d4a8d7.noarch.rpm44d9cbdcce4e59c215a13ca3515d49eb504a1fbfd0ccdbe23124958a9c16ac03-ol9_aarch64_appstream
nodejs-packaging-2021.06-4.module+el9.3.0+90066+12d4a8d7.noarch.rpm7e18e85f4cc6b3efca10bb56f962fe425daf962eda85ac1a4bd636ca4343250c-ol9_aarch64_appstream
nodejs-packaging-bundler-2021.06-4.module+el9.3.0+90066+12d4a8d7.noarch.rpm070f0c296e686c54e6b4382ecfb201b9aae85c84f755a5062b70f921f6006c24-ol9_aarch64_appstream
npm-10.5.0-1.20.12.2.2.module+el9.4.0+90322+0b80090c.aarch64.rpm6038312d78dc48d58813c496b083a87ccaeb0913f8fe469e85374099bd501c3c-ol9_aarch64_appstream
Oracle Linux 9 (x86_64) nodejs-20.12.2-2.module+el9.4.0+90322+0b80090c.src.rpm70a1b365af4c5084e3392f028accb52b3c6841cee3746fcc1ce4aa77602b05a3-ol9_x86_64_appstream
nodejs-nodemon-3.0.1-1.module+el9.3.0+90066+12d4a8d7.src.rpm624fb93a1092474a8d4a2d3fe6b7f4edd4c12affe479e931268616b3fe2f381c-ol9_x86_64_appstream
nodejs-packaging-2021.06-4.module+el9.3.0+90066+12d4a8d7.src.rpm745641bc36c893539705f623e95679d4e434457755dc343828ecd12d210428db-ol9_x86_64_appstream
nodejs-20.12.2-2.module+el9.4.0+90322+0b80090c.x86_64.rpmee75b9f4de7f96ac931aad8099af1126f3d0de40eb0fcc3f0d9f5d8b7c950796-ol9_x86_64_appstream
nodejs-devel-20.12.2-2.module+el9.4.0+90322+0b80090c.x86_64.rpm05f587358a17857f4b11fa3e8d32d1e4480f05de1681bd156ad4d212a521981e-ol9_x86_64_appstream
nodejs-docs-20.12.2-2.module+el9.4.0+90322+0b80090c.noarch.rpm60cda6876c9362b62f37ebbd4718cfb2310cd73876cfe7d372b5099d208eed9d-ol9_x86_64_appstream
nodejs-full-i18n-20.12.2-2.module+el9.4.0+90322+0b80090c.x86_64.rpm6426aced6507c6d13405f680ffb4ea20c2b83e7bde245e07d453ab78631c6fbd-ol9_x86_64_appstream
nodejs-nodemon-3.0.1-1.module+el9.3.0+90066+12d4a8d7.noarch.rpm44d9cbdcce4e59c215a13ca3515d49eb504a1fbfd0ccdbe23124958a9c16ac03-ol9_x86_64_appstream
nodejs-packaging-2021.06-4.module+el9.3.0+90066+12d4a8d7.noarch.rpm7e18e85f4cc6b3efca10bb56f962fe425daf962eda85ac1a4bd636ca4343250c-ol9_x86_64_appstream
nodejs-packaging-bundler-2021.06-4.module+el9.3.0+90066+12d4a8d7.noarch.rpm070f0c296e686c54e6b4382ecfb201b9aae85c84f755a5062b70f921f6006c24-ol9_x86_64_appstream
npm-10.5.0-1.20.12.2.2.module+el9.4.0+90322+0b80090c.x86_64.rpme4d52e921e6b7f9609f5579061c873530ea6c6d0d5aa4598aa0fcb68983e96ad-ol9_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete