[ELSA-2021-0734] nodejs:12 security update
Severity
Important
Affected Packages
7
CVEs
2
nodejs
[1:12.21.0-1]
- Resolves: RHBZ#1932315, RHBZ#1932424
- remove --debug-nghttp2 option
- remove ini patch
- Backport patch to use getauxval
Package | Affected Version |
---|---|
pkg:rpm/oraclelinux/npm?distro=oraclelinux-8.3 | < 6.14.11-1.12.21.0.1.module+el8.3.0+9672+c7b0544d |
pkg:rpm/oraclelinux/nodejs?distro=oraclelinux-8.3 | < 12.21.0-1.module+el8.3.0+9672+c7b0544d |
pkg:rpm/oraclelinux/nodejs-packaging?distro=oraclelinux-8.1 | < 17-3.module+el8.1.0+5393+aaf413e3 |
pkg:rpm/oraclelinux/nodejs-nodemon?distro=oraclelinux-8.3 | < 2.0.3-1.module+el8.3.0+9643+8c99e187 |
pkg:rpm/oraclelinux/nodejs-full-i18n?distro=oraclelinux-8.3 | < 12.21.0-1.module+el8.3.0+9672+c7b0544d |
pkg:rpm/oraclelinux/nodejs-docs?distro=oraclelinux-8.3 | < 12.21.0-1.module+el8.3.0+9672+c7b0544d |
pkg:rpm/oraclelinux/nodejs-devel?distro=oraclelinux-8.3 | < 12.21.0-1.module+el8.3.0+9672+c7b0544d |
- ID
- ELSA-2021-0734
- Severity
- important
- URL
- https://linux.oracle.com/errata/ELSA-2021-0734.html
- Published
-
2021-03-05T00:00:00
(3 years ago) - Modified
-
2021-03-05T00:00:00
(3 years ago) - Rights
- Copyright 2021 Oracle, Inc.
- Other Advisories
-
- ALPINE:CVE-2021-22883
- ALPINE:CVE-2021-22884
- ALSA-2021:0734
- ALSA-2021:0735
- ALSA-2021:0744
- DSA-4863-1
- ELSA-2021-0735
- ELSA-2021-0744
- FEDORA-2021-6aaba80ba2
- FEDORA-2021-a760169c3c
- FEDORA-2021-f6bd75e9d4
- FREEBSD:2F3CD69E-7DEE-11EB-B92E-0022489AD614
- FREEBSD:38A4A043-E937-11EB-9B84-D4C9EF517024
- GLSA-202405-29
- openSUSE-SU-2021:0356-1
- openSUSE-SU-2021:0357-1
- openSUSE-SU-2021:0372-1
- openSUSE-SU-2021:0389-1
- RHSA-2021:0734
- RHSA-2021:0735
- RHSA-2021:0744
- RLSA-2021:0734
- RLSA-2021:0735
- RLSA-2021:0744
- SUSE-SU-2021:0648-1
- SUSE-SU-2021:0649-1
- SUSE-SU-2021:0650-1
- SUSE-SU-2021:0651-1
- SUSE-SU-2021:0673-1
- SUSE-SU-2021:0674-1
- SUSE-SU-2021:0686-1
- SUSE-SU-2021:2620-1
- USN-6418-1
Source | # ID | Name | URL |
---|---|---|---|
elsa | ELSA-2021-0734 | https://linux.oracle.com/errata/ELSA-2021-0734.html | |
CVE | CVE-2021-22883 | https://linux.oracle.com/cve/CVE-2021-22883.html | |
CVE | CVE-2021-22884 | https://linux.oracle.com/cve/CVE-2021-22884.html |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/oraclelinux/npm?distro=oraclelinux-8.3 | oraclelinux | npm | < 6.14.11-1.12.21.0.1.module+el8.3.0+9672+c7b0544d | oraclelinux-8.3 | ||
Affected | pkg:rpm/oraclelinux/nodejs?distro=oraclelinux-8.3 | oraclelinux | nodejs | < 12.21.0-1.module+el8.3.0+9672+c7b0544d | oraclelinux-8.3 | ||
Affected | pkg:rpm/oraclelinux/nodejs-packaging?distro=oraclelinux-8.1 | oraclelinux | nodejs-packaging | < 17-3.module+el8.1.0+5393+aaf413e3 | oraclelinux-8.1 | ||
Affected | pkg:rpm/oraclelinux/nodejs-nodemon?distro=oraclelinux-8.3 | oraclelinux | nodejs-nodemon | < 2.0.3-1.module+el8.3.0+9643+8c99e187 | oraclelinux-8.3 | ||
Affected | pkg:rpm/oraclelinux/nodejs-full-i18n?distro=oraclelinux-8.3 | oraclelinux | nodejs-full-i18n | < 12.21.0-1.module+el8.3.0+9672+c7b0544d | oraclelinux-8.3 | ||
Affected | pkg:rpm/oraclelinux/nodejs-docs?distro=oraclelinux-8.3 | oraclelinux | nodejs-docs | < 12.21.0-1.module+el8.3.0+9672+c7b0544d | oraclelinux-8.3 | ||
Affected | pkg:rpm/oraclelinux/nodejs-devel?distro=oraclelinux-8.3 | oraclelinux | nodejs-devel | < 12.21.0-1.module+el8.3.0+9672+c7b0544d | oraclelinux-8.3 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |