[SUSE-SU-2022:2417-1] Security update for nodejs12

Severity Important
CVEs 5

Security update for nodejs12

This update for nodejs12 fixes the following issues:

  • CVE-2022-32212: Fixed DNS rebinding in --inspect via invalid IP addresses (bsc#1201328).
  • CVE-2022-32213: Fixed HTTP request smuggling due to flawed parsing of Transfer-Encoding (bsc#1201325).
  • CVE-2022-32214: Fixed HTTP request smuggling due to improper delimiting of header fields (bsc#1201326).
  • CVE-2022-32215: Fixed HTTP request smuggling due to incorrect parsing of multi-line Transfer-Encoding (bsc#1201327).
  • CVE-2022-2097: Fixed missing encrypted bytes in AES OCB mode (bsc#1201099).
ID
SUSE-SU-2022:2417-1
Severity
important
URL
https://www.suse.com/support/update/announcement/2022/suse-su-20222417-1/
Published
2022-07-15T15:36:05
(2 years ago)
Modified
2022-07-15T15:36:05
(2 years ago)
Rights
Copyright 2024 SUSE LLC. All rights reserved.
Other Advisories
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...