ELSA-2024-2853

ELSA-2024-2853 - nodejs:20 security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2024-05-16

Description


nodejs
[1:20.12.2-2]
- Backport nghttp2 patch for CVE-2024-28182

[1:20.12.2-1]
- Rebase to version 20.12.0
Fixes: CVE-2024-27983 CVE-2024-27982 CVE-2024-22025 (node)
Fixes: CVE-2024-25629 (c-ares)

nodejs-nodemon
nodejs-packaging


Related CVEs


CVE-2024-25629
CVE-2024-27983
CVE-2024-27982
CVE-2024-28182
CVE-2024-22025

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) nodejs-20.12.2-2.module+el9.4.0+90322+0b80090c.src.rpm487559c07e31b1dd2194754b94b66bba-ol9_aarch64_appstream
nodejs-nodemon-3.0.1-1.module+el9.3.0+90066+12d4a8d7.src.rpm3fe28bb8c8252b7f5f1e279e51adfd48-ol9_aarch64_appstream
nodejs-packaging-2021.06-4.module+el9.3.0+90066+12d4a8d7.src.rpme37d0145738296b346cfe198e4e9ccce-ol9_aarch64_appstream
nodejs-20.12.2-2.module+el9.4.0+90322+0b80090c.aarch64.rpm4f92fff4397aa04f02ec8d295e8d8596-ol9_aarch64_appstream
nodejs-devel-20.12.2-2.module+el9.4.0+90322+0b80090c.aarch64.rpmd1750a42a5689556609b53e5761e91f9-ol9_aarch64_appstream
nodejs-docs-20.12.2-2.module+el9.4.0+90322+0b80090c.noarch.rpm982867a4df94f5bd56fd5700fe525fdc-ol9_aarch64_appstream
nodejs-full-i18n-20.12.2-2.module+el9.4.0+90322+0b80090c.aarch64.rpmedb235f3a3888481800ab856dcf51585-ol9_aarch64_appstream
nodejs-nodemon-3.0.1-1.module+el9.3.0+90066+12d4a8d7.noarch.rpm86a012348d19c494137e87734c7ca71f-ol9_aarch64_appstream
nodejs-packaging-2021.06-4.module+el9.3.0+90066+12d4a8d7.noarch.rpm5ac6282aadc35cbd625c1c8d41880326-ol9_aarch64_appstream
nodejs-packaging-bundler-2021.06-4.module+el9.3.0+90066+12d4a8d7.noarch.rpm6fd8add20ee095a67f8e667c06bf0d38-ol9_aarch64_appstream
npm-10.5.0-1.20.12.2.2.module+el9.4.0+90322+0b80090c.aarch64.rpm8bfae08935f0f4152c2746e7dcddfd1c-ol9_aarch64_appstream
Oracle Linux 9 (x86_64) nodejs-20.12.2-2.module+el9.4.0+90322+0b80090c.src.rpm487559c07e31b1dd2194754b94b66bba-ol9_x86_64_appstream
nodejs-nodemon-3.0.1-1.module+el9.3.0+90066+12d4a8d7.src.rpm3fe28bb8c8252b7f5f1e279e51adfd48-ol9_x86_64_appstream
nodejs-packaging-2021.06-4.module+el9.3.0+90066+12d4a8d7.src.rpme37d0145738296b346cfe198e4e9ccce-ol9_x86_64_appstream
nodejs-20.12.2-2.module+el9.4.0+90322+0b80090c.x86_64.rpm0a3bfe39690d1fba2f0e721af11a31c0-ol9_x86_64_appstream
nodejs-devel-20.12.2-2.module+el9.4.0+90322+0b80090c.x86_64.rpmc73c35153d1fae789b08f66d683c8ba1-ol9_x86_64_appstream
nodejs-docs-20.12.2-2.module+el9.4.0+90322+0b80090c.noarch.rpm982867a4df94f5bd56fd5700fe525fdc-ol9_x86_64_appstream
nodejs-full-i18n-20.12.2-2.module+el9.4.0+90322+0b80090c.x86_64.rpmcf3d5fb8ec4a97c66489c7eacf556b30-ol9_x86_64_appstream
nodejs-nodemon-3.0.1-1.module+el9.3.0+90066+12d4a8d7.noarch.rpm86a012348d19c494137e87734c7ca71f-ol9_x86_64_appstream
nodejs-packaging-2021.06-4.module+el9.3.0+90066+12d4a8d7.noarch.rpm5ac6282aadc35cbd625c1c8d41880326-ol9_x86_64_appstream
nodejs-packaging-bundler-2021.06-4.module+el9.3.0+90066+12d4a8d7.noarch.rpm6fd8add20ee095a67f8e667c06bf0d38-ol9_x86_64_appstream
npm-10.5.0-1.20.12.2.2.module+el9.4.0+90322+0b80090c.x86_64.rpmaff9b2e1b4510769027d6096cc983659-ol9_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete