[ELSA-2023-0321] nodejs and nodejs-nodemon security, bug fix, and enhancement update

Severity Moderate
Affected Packages 6
CVEs 4

nodejs
[1:16.18.1-3]
- Update sources of undici WASM blobs
Resolves: rhbz#2151617

[1:16.18.1-2]
- Add back libs and v8-devel subpackages
- Related: RHBZ#2121126
- Record previously fixed CVE
- Resolves: CVE-2021-44906

[1:16.18.1-1]
- Rebase + CVEs
- Resolves: #2142808
- Resolves: #2142826, #2131745, #2142855

nodejs-nodemon
[2.0.20-2]
- Record CVE fixed in the current or previous upstream versions
- Resolves: CVE-2021-44906

ID
ELSA-2023-0321
Severity
moderate
URL
https://linux.oracle.com/errata/ELSA-2023-0321.html
Published
2023-01-24T00:00:00
(20 months ago)
Modified
2023-01-24T00:00:00
(20 months ago)
Rights
Copyright 2023 Oracle, Inc.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/npm?distro=oraclelinux-9.1 oraclelinux npm < 8.19.2-1.16.18.1.3.el9_1 oraclelinux-9.1
Affected pkg:rpm/oraclelinux/nodejs?distro=oraclelinux-9.1 oraclelinux nodejs < 16.18.1-3.el9_1 oraclelinux-9.1
Affected pkg:rpm/oraclelinux/nodejs-nodemon?distro=oraclelinux-9.1 oraclelinux nodejs-nodemon < 2.0.20-2.el9_1 oraclelinux-9.1
Affected pkg:rpm/oraclelinux/nodejs-libs?distro=oraclelinux-9.1 oraclelinux nodejs-libs < 16.18.1-3.el9_1 oraclelinux-9.1
Affected pkg:rpm/oraclelinux/nodejs-full-i18n?distro=oraclelinux-9.1 oraclelinux nodejs-full-i18n < 16.18.1-3.el9_1 oraclelinux-9.1
Affected pkg:rpm/oraclelinux/nodejs-docs?distro=oraclelinux-9.1 oraclelinux nodejs-docs < 16.18.1-3.el9_1 oraclelinux-9.1
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...