[ELSA-2022-8833] nodejs:18 security, bug fix, and enhancement update

Severity Moderate
Affected Packages 8
CVEs 2

nodejs
[1:18.12.1-2]
- Update version of bundled histogram

[1:18.12.1-1]
- Rebase to version 18.12.1
Resolves: rhbz#2125580 CVE-2022-43548 CVE-2022-3517

[1:18.9.1-1]
- Rebase to version 18.9.1
Resolves: CVE-2022-35255 CVE-2022-35256

nodejs-nodemon
[2.0.20-1]
- Rebase to 2.0.20
Resolves: CVE-2022-3517

Package Affected Version
pkg:rpm/oraclelinux/npm?distro=oraclelinux-8.7 < 8.19.2-1.18.12.1.2.module+el8.7.0+20890+579912a9
pkg:rpm/oraclelinux/nodejs?distro=oraclelinux-8.7 < 18.12.1-2.module+el8.7.0+20890+579912a9
pkg:rpm/oraclelinux/nodejs-packaging?distro=oraclelinux-8.7 < 2021.06-4.module+el8.7.0+20766+0a247725
pkg:rpm/oraclelinux/nodejs-packaging-bundler?distro=oraclelinux-8.7 < 2021.06-4.module+el8.7.0+20766+0a247725
pkg:rpm/oraclelinux/nodejs-nodemon?distro=oraclelinux-8.7 < 2.0.20-1.module+el8.7.0+20890+579912a9
pkg:rpm/oraclelinux/nodejs-full-i18n?distro=oraclelinux-8.7 < 18.12.1-2.module+el8.7.0+20890+579912a9
pkg:rpm/oraclelinux/nodejs-docs?distro=oraclelinux-8.7 < 18.12.1-2.module+el8.7.0+20890+579912a9
pkg:rpm/oraclelinux/nodejs-devel?distro=oraclelinux-8.7 < 18.12.1-2.module+el8.7.0+20890+579912a9
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/npm?distro=oraclelinux-8.7 oraclelinux npm < 8.19.2-1.18.12.1.2.module+el8.7.0+20890+579912a9 oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs?distro=oraclelinux-8.7 oraclelinux nodejs < 18.12.1-2.module+el8.7.0+20890+579912a9 oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs-packaging?distro=oraclelinux-8.7 oraclelinux nodejs-packaging < 2021.06-4.module+el8.7.0+20766+0a247725 oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs-packaging-bundler?distro=oraclelinux-8.7 oraclelinux nodejs-packaging-bundler < 2021.06-4.module+el8.7.0+20766+0a247725 oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs-nodemon?distro=oraclelinux-8.7 oraclelinux nodejs-nodemon < 2.0.20-1.module+el8.7.0+20890+579912a9 oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs-full-i18n?distro=oraclelinux-8.7 oraclelinux nodejs-full-i18n < 18.12.1-2.module+el8.7.0+20890+579912a9 oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs-docs?distro=oraclelinux-8.7 oraclelinux nodejs-docs < 18.12.1-2.module+el8.7.0+20890+579912a9 oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs-devel?distro=oraclelinux-8.7 oraclelinux nodejs-devel < 18.12.1-2.module+el8.7.0+20890+579912a9 oraclelinux-8.7
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...