[ELSA-2023-0050] nodejs:14 security, bug fix, and enhancement update

Severity Moderate
Affected Packages 7
CVEs 5

nodejs
[1:14.21.1-2]
- Apply upstream fix for CVE-2022-24999
Resolves: CVE-2022-24999
- Record CVEs fixed by current or previous upstream releases
Resolves: CVE-2021-44906

[1:14.21.1-1]
- Rebase to version 14.21.1
Resolves: rhbz#2129805 CVE-2022-43548 CVE-2022-3517

Package Affected Version
pkg:rpm/oraclelinux/npm?distro=oraclelinux-8.7 < 6.14.17-1.14.21.1.2.module+el8.7.0+20895+79a25710
pkg:rpm/oraclelinux/nodejs?distro=oraclelinux-8.7 < 14.21.1-2.module+el8.7.0+20895+79a25710
pkg:rpm/oraclelinux/nodejs-packaging?distro=oraclelinux-8.3 < 23-3.module+el8.3.0+7818+6cd30d85
pkg:rpm/oraclelinux/nodejs-nodemon?distro=oraclelinux-8.7 < 2.0.20-2.module+el8.7.0+20895+79a25710
pkg:rpm/oraclelinux/nodejs-full-i18n?distro=oraclelinux-8.7 < 14.21.1-2.module+el8.7.0+20895+79a25710
pkg:rpm/oraclelinux/nodejs-docs?distro=oraclelinux-8.7 < 14.21.1-2.module+el8.7.0+20895+79a25710
pkg:rpm/oraclelinux/nodejs-devel?distro=oraclelinux-8.7 < 14.21.1-2.module+el8.7.0+20895+79a25710
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/npm?distro=oraclelinux-8.7 oraclelinux npm < 6.14.17-1.14.21.1.2.module+el8.7.0+20895+79a25710 oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs?distro=oraclelinux-8.7 oraclelinux nodejs < 14.21.1-2.module+el8.7.0+20895+79a25710 oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs-packaging?distro=oraclelinux-8.3 oraclelinux nodejs-packaging < 23-3.module+el8.3.0+7818+6cd30d85 oraclelinux-8.3
Affected pkg:rpm/oraclelinux/nodejs-nodemon?distro=oraclelinux-8.7 oraclelinux nodejs-nodemon < 2.0.20-2.module+el8.7.0+20895+79a25710 oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs-full-i18n?distro=oraclelinux-8.7 oraclelinux nodejs-full-i18n < 14.21.1-2.module+el8.7.0+20895+79a25710 oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs-docs?distro=oraclelinux-8.7 oraclelinux nodejs-docs < 14.21.1-2.module+el8.7.0+20895+79a25710 oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs-devel?distro=oraclelinux-8.7 oraclelinux nodejs-devel < 14.21.1-2.module+el8.7.0+20895+79a25710 oraclelinux-8.7
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...