[ELSA-2023-1582] nodejs:16 security, bug fix, and enhancement update

Severity Moderate
Affected Packages 7
CVEs 8

nodejs
[1:16.19.1-1]
- Rebase to 16.19.1
Resolves: rhbz#2153713
Resolves: CVE-2023-23918 CVE-2023-23919 CVE-2023-23936 CVE-2023-24807 CVE-2023-23920
Resolves: CVE-2022-25881 CVE-2022-4904

nodejs-nodemon
[2.0.20-3]
- Patch bundled glob-parent
Resolves: CVE-2021-35065

Package Affected Version
pkg:rpm/oraclelinux/npm?distro=oraclelinux-8.7 < 8.19.3-1.16.19.1.1.module+el8.7.0+21021+1eb7f63d
pkg:rpm/oraclelinux/nodejs?distro=oraclelinux-8.7 < 16.19.1-1.module+el8.7.0+21021+1eb7f63d
pkg:rpm/oraclelinux/nodejs-packaging?distro=oraclelinux-8.5 < 25-1.module+el8.5.0+20388+4b61e68d
pkg:rpm/oraclelinux/nodejs-nodemon?distro=oraclelinux-8.7 < 2.0.20-3.module+el8.7.0+21021+1eb7f63d
pkg:rpm/oraclelinux/nodejs-full-i18n?distro=oraclelinux-8.7 < 16.19.1-1.module+el8.7.0+21021+1eb7f63d
pkg:rpm/oraclelinux/nodejs-docs?distro=oraclelinux-8.7 < 16.19.1-1.module+el8.7.0+21021+1eb7f63d
pkg:rpm/oraclelinux/nodejs-devel?distro=oraclelinux-8.7 < 16.19.1-1.module+el8.7.0+21021+1eb7f63d
ID
ELSA-2023-1582
Severity
moderate
URL
https://linux.oracle.com/errata/ELSA-2023-1582.html
Published
2023-04-05T00:00:00
(17 months ago)
Modified
2023-04-05T00:00:00
(17 months ago)
Rights
Copyright 2023 Oracle, Inc.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/npm?distro=oraclelinux-8.7 oraclelinux npm < 8.19.3-1.16.19.1.1.module+el8.7.0+21021+1eb7f63d oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs?distro=oraclelinux-8.7 oraclelinux nodejs < 16.19.1-1.module+el8.7.0+21021+1eb7f63d oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs-packaging?distro=oraclelinux-8.5 oraclelinux nodejs-packaging < 25-1.module+el8.5.0+20388+4b61e68d oraclelinux-8.5
Affected pkg:rpm/oraclelinux/nodejs-nodemon?distro=oraclelinux-8.7 oraclelinux nodejs-nodemon < 2.0.20-3.module+el8.7.0+21021+1eb7f63d oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs-full-i18n?distro=oraclelinux-8.7 oraclelinux nodejs-full-i18n < 16.19.1-1.module+el8.7.0+21021+1eb7f63d oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs-docs?distro=oraclelinux-8.7 oraclelinux nodejs-docs < 16.19.1-1.module+el8.7.0+21021+1eb7f63d oraclelinux-8.7
Affected pkg:rpm/oraclelinux/nodejs-devel?distro=oraclelinux-8.7 oraclelinux nodejs-devel < 16.19.1-1.module+el8.7.0+21021+1eb7f63d oraclelinux-8.7
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...