[FEDORA-2023-dbe64661af] Fedora 39: nodejs18

Severity High
Affected Packages 1
CVEs 4

2023-10-13, Version 18.18.2 'Hydrogen' (LTS), @RafaelGSS This is a security

release. ### Notable Changes The following CVEs are fixed in this release: *
CVE-2023-44487:
nghttp2 Security Release (High) * CVE-2023-45143: undici Security Release (High) *
CVE-2023-38552:
Integrity checks according to policies can be circumvented (Medium) *
CVE-2023-39333:
Code injection via WebAssembly export names (Low) More detailed information on
each of the vulnerabilities can be found in October 2023 Security
Releases
blog post.

Package Affected Version
pkg:rpm/fedora/nodejs18?distro=fedora-39 < 18.18.2.1.fc39
ID
FEDORA-2023-dbe64661af
Severity
high
Severity from
CVE-2023-44487
URL
https://bodhi.fedoraproject.org/updates/FEDORA-2023-dbe64661af
Published
2023-11-03T18:59:17
(10 months ago)
Modified
2023-11-03T18:59:17
(10 months ago)
Rights
Copyright 2023 Red Hat, Inc.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/fedora/nodejs18?distro=fedora-39 fedora nodejs18 < 18.18.2.1.fc39 fedora-39
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...