[SUSE-SU-2024:1355-1] Security update for nodejs14

Severity Important
Affected Packages 26
CVEs 2

Security update for nodejs14

This update for nodejs14 fixes the following issues:

  • CVE-2024-27983: Fixed failed assertion in node::http2::Http2Session::~Http2Session() that could lead to HTTP/2 server crash (bsc#1222244)
  • CVE-2024-27982: Fixed HTTP Request Smuggling via Content Length Obfuscation (bsc#1222384)
Package Affected Version
pkg:rpm/suse/npm14?arch=x86_64&distro=sles-15&sp=3 < 14.21.3-150200.15.58.1
pkg:rpm/suse/npm14?arch=x86_64&distro=sles-15&sp=2 < 14.21.3-150200.15.58.1
pkg:rpm/suse/npm14?arch=s390x&distro=sles-15&sp=3 < 14.21.3-150200.15.58.1
pkg:rpm/suse/npm14?arch=s390x&distro=sles-15&sp=2 < 14.21.3-150200.15.58.1
pkg:rpm/suse/npm14?arch=ppc64le&distro=sles-15&sp=3 < 14.21.3-150200.15.58.1
pkg:rpm/suse/npm14?arch=ppc64le&distro=sles-15&sp=2 < 14.21.3-150200.15.58.1
pkg:rpm/suse/npm14?arch=aarch64&distro=sles-15&sp=3 < 14.21.3-150200.15.58.1
pkg:rpm/suse/npm14?arch=aarch64&distro=sles-15&sp=2 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14?arch=x86_64&distro=sles-15&sp=3 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14?arch=x86_64&distro=sles-15&sp=2 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14?arch=s390x&distro=sles-15&sp=3 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14?arch=s390x&distro=sles-15&sp=2 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14?arch=ppc64le&distro=sles-15&sp=3 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14?arch=ppc64le&distro=sles-15&sp=2 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14?arch=aarch64&distro=sles-15&sp=3 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14?arch=aarch64&distro=sles-15&sp=2 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14-docs?arch=noarch&distro=sles-15&sp=3 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14-docs?arch=noarch&distro=sles-15&sp=2 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14-devel?arch=x86_64&distro=sles-15&sp=3 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14-devel?arch=x86_64&distro=sles-15&sp=2 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14-devel?arch=s390x&distro=sles-15&sp=3 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14-devel?arch=s390x&distro=sles-15&sp=2 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14-devel?arch=ppc64le&distro=sles-15&sp=3 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14-devel?arch=ppc64le&distro=sles-15&sp=2 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14-devel?arch=aarch64&distro=sles-15&sp=3 < 14.21.3-150200.15.58.1
pkg:rpm/suse/nodejs14-devel?arch=aarch64&distro=sles-15&sp=2 < 14.21.3-150200.15.58.1
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/npm14?arch=x86_64&distro=sles-15&sp=3 suse npm14 < 14.21.3-150200.15.58.1 sles-15 x86_64
Affected pkg:rpm/suse/npm14?arch=x86_64&distro=sles-15&sp=2 suse npm14 < 14.21.3-150200.15.58.1 sles-15 x86_64
Affected pkg:rpm/suse/npm14?arch=s390x&distro=sles-15&sp=3 suse npm14 < 14.21.3-150200.15.58.1 sles-15 s390x
Affected pkg:rpm/suse/npm14?arch=s390x&distro=sles-15&sp=2 suse npm14 < 14.21.3-150200.15.58.1 sles-15 s390x
Affected pkg:rpm/suse/npm14?arch=ppc64le&distro=sles-15&sp=3 suse npm14 < 14.21.3-150200.15.58.1 sles-15 ppc64le
Affected pkg:rpm/suse/npm14?arch=ppc64le&distro=sles-15&sp=2 suse npm14 < 14.21.3-150200.15.58.1 sles-15 ppc64le
Affected pkg:rpm/suse/npm14?arch=aarch64&distro=sles-15&sp=3 suse npm14 < 14.21.3-150200.15.58.1 sles-15 aarch64
Affected pkg:rpm/suse/npm14?arch=aarch64&distro=sles-15&sp=2 suse npm14 < 14.21.3-150200.15.58.1 sles-15 aarch64
Affected pkg:rpm/suse/nodejs14?arch=x86_64&distro=sles-15&sp=3 suse nodejs14 < 14.21.3-150200.15.58.1 sles-15 x86_64
Affected pkg:rpm/suse/nodejs14?arch=x86_64&distro=sles-15&sp=2 suse nodejs14 < 14.21.3-150200.15.58.1 sles-15 x86_64
Affected pkg:rpm/suse/nodejs14?arch=s390x&distro=sles-15&sp=3 suse nodejs14 < 14.21.3-150200.15.58.1 sles-15 s390x
Affected pkg:rpm/suse/nodejs14?arch=s390x&distro=sles-15&sp=2 suse nodejs14 < 14.21.3-150200.15.58.1 sles-15 s390x
Affected pkg:rpm/suse/nodejs14?arch=ppc64le&distro=sles-15&sp=3 suse nodejs14 < 14.21.3-150200.15.58.1 sles-15 ppc64le
Affected pkg:rpm/suse/nodejs14?arch=ppc64le&distro=sles-15&sp=2 suse nodejs14 < 14.21.3-150200.15.58.1 sles-15 ppc64le
Affected pkg:rpm/suse/nodejs14?arch=aarch64&distro=sles-15&sp=3 suse nodejs14 < 14.21.3-150200.15.58.1 sles-15 aarch64
Affected pkg:rpm/suse/nodejs14?arch=aarch64&distro=sles-15&sp=2 suse nodejs14 < 14.21.3-150200.15.58.1 sles-15 aarch64
Affected pkg:rpm/suse/nodejs14-docs?arch=noarch&distro=sles-15&sp=3 suse nodejs14-docs < 14.21.3-150200.15.58.1 sles-15 noarch
Affected pkg:rpm/suse/nodejs14-docs?arch=noarch&distro=sles-15&sp=2 suse nodejs14-docs < 14.21.3-150200.15.58.1 sles-15 noarch
Affected pkg:rpm/suse/nodejs14-devel?arch=x86_64&distro=sles-15&sp=3 suse nodejs14-devel < 14.21.3-150200.15.58.1 sles-15 x86_64
Affected pkg:rpm/suse/nodejs14-devel?arch=x86_64&distro=sles-15&sp=2 suse nodejs14-devel < 14.21.3-150200.15.58.1 sles-15 x86_64
Affected pkg:rpm/suse/nodejs14-devel?arch=s390x&distro=sles-15&sp=3 suse nodejs14-devel < 14.21.3-150200.15.58.1 sles-15 s390x
Affected pkg:rpm/suse/nodejs14-devel?arch=s390x&distro=sles-15&sp=2 suse nodejs14-devel < 14.21.3-150200.15.58.1 sles-15 s390x
Affected pkg:rpm/suse/nodejs14-devel?arch=ppc64le&distro=sles-15&sp=3 suse nodejs14-devel < 14.21.3-150200.15.58.1 sles-15 ppc64le
Affected pkg:rpm/suse/nodejs14-devel?arch=ppc64le&distro=sles-15&sp=2 suse nodejs14-devel < 14.21.3-150200.15.58.1 sles-15 ppc64le
Affected pkg:rpm/suse/nodejs14-devel?arch=aarch64&distro=sles-15&sp=3 suse nodejs14-devel < 14.21.3-150200.15.58.1 sles-15 aarch64
Affected pkg:rpm/suse/nodejs14-devel?arch=aarch64&distro=sles-15&sp=2 suse nodejs14-devel < 14.21.3-150200.15.58.1 sles-15 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...