[ELSA-2023-5850] nodejs:16 security update

Severity Important
Affected Packages 7
CVEs 1

nodejs
[1:16.20.2-3.0.1]
- Update nghttp2 to 1.57.0
Resolves: CVE-2023-44487

nodejs-nodemon
nodejs-packaging
[26-1]
- nodejs.prov: find namespaced bundled dependencies
- Apply https://src.fedoraproject.org/rpms/nodejs-packaging/c/e24e7df

Package Affected Version
pkg:rpm/oraclelinux/npm?distro=oraclelinux-8.8 < 8.19.4-1.16.20.2.3.0.1.module+el8.8.0+21192+e43554c6
pkg:rpm/oraclelinux/nodejs?distro=oraclelinux-8.8 < 16.20.2-3.0.1.module+el8.8.0+21192+e43554c6
pkg:rpm/oraclelinux/nodejs-packaging?distro=oraclelinux-8.8 < 26-1.module+el8.8.0+21172+0baa0bae
pkg:rpm/oraclelinux/nodejs-nodemon?distro=oraclelinux-8.8 < 3.0.1-1.module+el8.8.0+21172+0baa0bae
pkg:rpm/oraclelinux/nodejs-full-i18n?distro=oraclelinux-8.8 < 16.20.2-3.0.1.module+el8.8.0+21192+e43554c6
pkg:rpm/oraclelinux/nodejs-docs?distro=oraclelinux-8.8 < 16.20.2-3.0.1.module+el8.8.0+21192+e43554c6
pkg:rpm/oraclelinux/nodejs-devel?distro=oraclelinux-8.8 < 16.20.2-3.0.1.module+el8.8.0+21192+e43554c6
ID
ELSA-2023-5850
Severity
important
URL
https://linux.oracle.com/errata/ELSA-2023-5850.html
Published
2023-10-20T00:00:00
(11 months ago)
Modified
2023-10-20T00:00:00
(11 months ago)
Rights
Copyright 2023 Oracle, Inc.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/npm?distro=oraclelinux-8.8 oraclelinux npm < 8.19.4-1.16.20.2.3.0.1.module+el8.8.0+21192+e43554c6 oraclelinux-8.8
Affected pkg:rpm/oraclelinux/nodejs?distro=oraclelinux-8.8 oraclelinux nodejs < 16.20.2-3.0.1.module+el8.8.0+21192+e43554c6 oraclelinux-8.8
Affected pkg:rpm/oraclelinux/nodejs-packaging?distro=oraclelinux-8.8 oraclelinux nodejs-packaging < 26-1.module+el8.8.0+21172+0baa0bae oraclelinux-8.8
Affected pkg:rpm/oraclelinux/nodejs-nodemon?distro=oraclelinux-8.8 oraclelinux nodejs-nodemon < 3.0.1-1.module+el8.8.0+21172+0baa0bae oraclelinux-8.8
Affected pkg:rpm/oraclelinux/nodejs-full-i18n?distro=oraclelinux-8.8 oraclelinux nodejs-full-i18n < 16.20.2-3.0.1.module+el8.8.0+21192+e43554c6 oraclelinux-8.8
Affected pkg:rpm/oraclelinux/nodejs-docs?distro=oraclelinux-8.8 oraclelinux nodejs-docs < 16.20.2-3.0.1.module+el8.8.0+21192+e43554c6 oraclelinux-8.8
Affected pkg:rpm/oraclelinux/nodejs-devel?distro=oraclelinux-8.8 oraclelinux nodejs-devel < 16.20.2-3.0.1.module+el8.8.0+21192+e43554c6 oraclelinux-8.8
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...