[ELSA-2021-3073] nodejs:12 security, bug fix, and enhancement update
Severity
Moderate
Affected Packages
7
CVEs
3
nodejs
[1:12.22.3-2]
- Resolves: RHBZ#1980031, RHBZ#1978201
- Fix typo, BR systemtap-sdt-level always, remove y18n patch
[1:12.22.3-1]
- Resolves: RHBZ#1980031, RHBZ#1978201
- Resolves #1952915
- Resolves CVE-2021-22918(libuv), use system cipher list
nodejs-nodemon
[2.0.3-1]
- Resolves: RHBZ#1920692, RHBZ#1804236, RHBZ#1803247
- Rebase to 2.0.3
Package | Affected Version |
---|---|
pkg:rpm/oraclelinux/npm?distro=oraclelinux-8.4 | < 6.14.13-1.12.22.3.2.module+el8.4.0+20281+eb64e322 |
pkg:rpm/oraclelinux/nodejs?distro=oraclelinux-8.4 | < 12.22.3-2.module+el8.4.0+20281+eb64e322 |
pkg:rpm/oraclelinux/nodejs-packaging?distro=oraclelinux-8.1 | < 17-3.module+el8.1.0+5393+aaf413e3 |
pkg:rpm/oraclelinux/nodejs-nodemon?distro=oraclelinux-8.4 | < 2.0.3-1.module+el8.4.0+20281+eb64e322 |
pkg:rpm/oraclelinux/nodejs-full-i18n?distro=oraclelinux-8.4 | < 12.22.3-2.module+el8.4.0+20281+eb64e322 |
pkg:rpm/oraclelinux/nodejs-docs?distro=oraclelinux-8.4 | < 12.22.3-2.module+el8.4.0+20281+eb64e322 |
pkg:rpm/oraclelinux/nodejs-devel?distro=oraclelinux-8.4 | < 12.22.3-2.module+el8.4.0+20281+eb64e322 |
- ID
- ELSA-2021-3073
- Severity
- moderate
- URL
- https://linux.oracle.com/errata/ELSA-2021-3073.html
- Published
-
2021-08-12T00:00:00
(3 years ago) - Modified
-
2021-08-12T00:00:00
(3 years ago) - Rights
- Copyright 2021 Oracle, Inc.
- Other Advisories
-
- ALAS2-2024-2410
- ALPINE:CVE-2021-22918
- ALPINE:CVE-2021-27290
- ALSA-2021:3073
- ALSA-2021:3074
- ALSA-2021:3075
- ASA-202107-13
- ASA-202107-36
- DSA-4936-1
- ELSA-2021-3074
- ELSA-2021-3075
- FREEBSD:C174118E-1B11-11EC-9D9D-0022489AD614
- GLSA-202401-23
- GLSA-202405-29
- MS:CVE-2021-22918
- NPM:GHSA-43F8-2H32-F4CJ
- NPM:GHSA-VX3P-948G-6VHQ
- openSUSE-SU-2021:1059-1
- openSUSE-SU-2021:1060-1
- openSUSE-SU-2021:1061-1
- openSUSE-SU-2021:1113-1
- openSUSE-SU-2021:2327-1
- openSUSE-SU-2021:2353-1
- openSUSE-SU-2021:2354-1
- openSUSE-SU-2021:2618-1
- RHSA-2021:3073
- RHSA-2021:3074
- RHSA-2021:3075
- RLSA-2021:3073
- RLSA-2021:3074
- RLSA-2021:3075
- SUSE-SU-2021:2319-1
- SUSE-SU-2021:2323-1
- SUSE-SU-2021:2326-1
- SUSE-SU-2021:2327-1
- SUSE-SU-2021:2353-1
- SUSE-SU-2021:2354-1
- SUSE-SU-2021:2618-1
- SUSE-SU-2021:2620-1
- USN-5007-1
- USN-5216-1
Source | # ID | Name | URL |
---|---|---|---|
elsa | ELSA-2021-3073 | https://linux.oracle.com/errata/ELSA-2021-3073.html | |
CVE | CVE-2021-22918 | https://linux.oracle.com/cve/CVE-2021-22918.html | |
CVE | CVE-2021-27290 | https://linux.oracle.com/cve/CVE-2021-27290.html | |
CVE | CVE-2021-23362 | https://linux.oracle.com/cve/CVE-2021-23362.html |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/oraclelinux/npm?distro=oraclelinux-8.4 | oraclelinux | npm | < 6.14.13-1.12.22.3.2.module+el8.4.0+20281+eb64e322 | oraclelinux-8.4 | ||
Affected | pkg:rpm/oraclelinux/nodejs?distro=oraclelinux-8.4 | oraclelinux | nodejs | < 12.22.3-2.module+el8.4.0+20281+eb64e322 | oraclelinux-8.4 | ||
Affected | pkg:rpm/oraclelinux/nodejs-packaging?distro=oraclelinux-8.1 | oraclelinux | nodejs-packaging | < 17-3.module+el8.1.0+5393+aaf413e3 | oraclelinux-8.1 | ||
Affected | pkg:rpm/oraclelinux/nodejs-nodemon?distro=oraclelinux-8.4 | oraclelinux | nodejs-nodemon | < 2.0.3-1.module+el8.4.0+20281+eb64e322 | oraclelinux-8.4 | ||
Affected | pkg:rpm/oraclelinux/nodejs-full-i18n?distro=oraclelinux-8.4 | oraclelinux | nodejs-full-i18n | < 12.22.3-2.module+el8.4.0+20281+eb64e322 | oraclelinux-8.4 | ||
Affected | pkg:rpm/oraclelinux/nodejs-docs?distro=oraclelinux-8.4 | oraclelinux | nodejs-docs | < 12.22.3-2.module+el8.4.0+20281+eb64e322 | oraclelinux-8.4 | ||
Affected | pkg:rpm/oraclelinux/nodejs-devel?distro=oraclelinux-8.4 | oraclelinux | nodejs-devel | < 12.22.3-2.module+el8.4.0+20281+eb64e322 | oraclelinux-8.4 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |