[FEDORA-2019-5a6a7bc12c] Fedora 30: nodejs

Severity High
Affected Packages 1
CVEs 8

Update to Node.js 10.6.13

Package Affected Version
pkg:rpm/fedora/nodejs?distro=fedora-30 < 10.16.3.1.fc30
ID
FEDORA-2019-5a6a7bc12c
Severity
high
Severity from
CVE-2019-9511
URL
https://bodhi.fedoraproject.org/updates/FEDORA-2019-5a6a7bc12c
Published
2019-08-25T00:58:04
(5 years ago)
Modified
2019-08-25T00:58:04
(5 years ago)
Rights
Copyright 2019 Red Hat, Inc.
Other Advisories
Source # ID Name URL
Bugzilla 1741969 Bug #1741969 - CVE-2019-9518 nodejs: HTTP/2: flood using empty frames results in excessive resources consumption [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1741969
Bugzilla 1741979 Bug #1741979 - CVE-2019-9516 nodejs: HTTP/2: 0-length headers leads to denial of service [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1741979
Bugzilla 1741967 Bug #1741967 - CVE-2019-9513 nodejs: HTTP/2: flood using PRIORITY frames resulting in excessive resource consumption [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1741967
Bugzilla 1741968 Bug #1741968 - CVE-2019-9515 nodejs: http/2: HTTP/2 flood using SETTINGS frames results in unbounded memory growth [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1741968
Bugzilla 1741964 Bug #1741964 - CVE-2019-9514 nodejs: http/2: HTTP/2 flood using HEADERS frames results in unbounded memory growth [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1741964
Bugzilla 1741974 Bug #1741974 - CVE-2019-9517 nodejs: HTTP/2: request for large response leads to denial of service [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1741974
Bugzilla 1741962 Bug #1741962 - CVE-2019-9512 nodejs: http/2: HTTP/2 flood using PING frames results in unbounded memory growth [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1741962
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/fedora/nodejs?distro=fedora-30 fedora nodejs < 10.16.3.1.fc30 fedora-30
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...