Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-2852

Опубликовано: 14 июл. 2020
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2020-2852: nodejs:12 security update (IMPORTANT)

nodejs [12.18.2-1]

  • Rebase to 12.18.2

[1:12.18.1-1]

  • Rebase
  • Spec clean up
  • Provide i18n package, bundle icu
  • Resolves: RHBZ#1845310, RHBZ#1845691

[1:12.18.0-1]

  • Security update to 12.18.0
  • Resolves: RHBZ#1845310, RHBZ#1845691

[1:12.16.1-2]

  • Fix CVE-2020-10531

[1:12.16.1-1]

  • Resolves: RHBZ#1800395, RHBZ#1800396, RHBZ#1800381
  • Rebase to 12.16.1

[1:12.14.1-1]

  • Rebase to 12.14.1

[1:12.13.1-1]

  • Resolves: RHBZ# 1773503, update to 12.13.1
  • minor clean up and sync with Fedora spec
  • turn off debug builds

[1:12.4.0-2]

  • Resolves:RHBZ#1685191
  • Add condition to libs

[1:12.4.0-1]

  • Update to v12.x
  • Add v8-devel and libs subpackages from fedora

[1:10.14.1-2]

  • move nodejs-packaging BR out of conditional

[1:10.14.1-1]

  • Resolves: RHBZ#1644207
  • fixes node-gyp permissions
  • rebase

[1:10.11.0-2]

  • BuildRequire nodejs-packaging for proper npm dependency generation
  • Resolves: rhbz#1615947

[1:10.11.0-1]

  • Rebase to 10.11.0
  • Import changes from fedora
  • Resolves: rhbz#1621766

[1:10.7.0-5]

  • Import sources from fedora
  • Allow using python2 at %build and %install
  • turn off debug for aarch64

[1:10.7.0-4]

  • Fix npm upgrade scriptlet
  • Fix unexpected trailing .1 in npm release field

[1:10.7.0-3]

  • Restore annotations to binaries
  • Fix unexpected trailing .1 in release field

[1:10.7.0-2]

[1:10.5.0-1.1]

[1:10.5.0-1]

[1:10.4.1-1]

[1:10.4.0-1]

[1:10.3.0-1]

[1:10.2.1-2]

  • Fix up bare 'python' to be python2
  • Drop redundant entry in docs section

[1:10.2.1-1]

[1:10.2.0-1]

[1:10.1.0-3]

  • Fix incorrect rpm macro

[1:10.1.0-2]

  • Include upstream v8 fix for ppc64[le]
  • Disable debug build on ppc64[le] and s390x

[1:10.1.0-1]

[1:10.0.0-1]

[1:9.11.1-2]

  • Use standard Fedora linker flags (bug #1543859)

[1:9.11.1-1]

[1:9.10.0-1]

[1:9.9.0-1]

[1:9.8.0-1]

[1:9.7.0-1]

[1:9.6.1-1]

[1:9.5.0-1]

  • Package Node.js 9.5.0

[1:8.9.4-2]

  • Fix incorrect Requires:

[1:8.9.4-1]

[1:8.9.3-2]

[1:8.9.1-2]

  • Rebuild for ICU 60.1

[1:8.9.1-1]

  • Update to 8.9.1

[1:8.9.0-1]

  • Update to 8.9.0
  • Drop upstreamed patch

[1:8.8.1-1]

  • Update to 8.8.1 to fix a regression

[1:8.8.0-1]

[1:8.7.0-1]

[1:8.6.0-2]

  • Use bcond macro instead of bootstrap conditional

[1:8.6.0-1]

[1:8.5.0-3]

  • Build with bootstrap + bundle libuv for modularity
  • backport patch for aarch64 debug build

[1:8.5.0-2]

[1:8.5.0-1]

[1:8.4.0-2]

  • Refactor openssl BR

[1:8.4.0-1]

[1:8.3.0-1]

[1:8.2.1-2]

  • Bump release to fix broken dependencies

[1:8.2.1-1.2]

[1:8.2.1-1.1]

[1:8.2.1-1]

[1:8.2.0-1]

[1:8.1.4-3]

  • s/BuildRequires/Requires/ for http-parser-devel%{?_isa}

[1:8.1.4-2]

  • Rename python-devel to python2-devel
  • own %{_pkgdocdir}/npm

[1:8.1.4-1]

[1:8.1.3-1]

[1:8.1.2-1]

  • Update to v8.1.2
  • remove GCC 7 patch, as it is now fixed in node >= 6.12

nodejs-nodemon nodejs-packaging

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

Module nodejs:12 is enabled

nodejs

12.18.2-1.module+el8.2.0+7636+541a18d0

nodejs-devel

12.18.2-1.module+el8.2.0+7636+541a18d0

nodejs-docs

12.18.2-1.module+el8.2.0+7636+541a18d0

nodejs-full-i18n

12.18.2-1.module+el8.2.0+7636+541a18d0

nodejs-nodemon

1.18.3-1.module+el8.1.0+5393+aaf413e3

nodejs-packaging

17-3.module+el8.1.0+5393+aaf413e3

npm

6.14.5-1.12.18.2.1.module+el8.2.0+7636+541a18d0

Oracle Linux x86_64

Module nodejs:12 is enabled

nodejs

12.18.2-1.module+el8.2.0+7636+541a18d0

nodejs-devel

12.18.2-1.module+el8.2.0+7636+541a18d0

nodejs-docs

12.18.2-1.module+el8.2.0+7636+541a18d0

nodejs-full-i18n

12.18.2-1.module+el8.2.0+7636+541a18d0

nodejs-nodemon

1.18.3-1.module+el8.1.0+5393+aaf413e3

nodejs-packaging

17-3.module+el8.1.0+5393+aaf413e3

npm

6.14.5-1.12.18.2.1.module+el8.2.0+7636+541a18d0

Связанные уязвимости

suse-cvrf
около 5 лет назад

Security update for nodejs12

rocky
почти 5 лет назад

Important: nodejs:12 security update

suse-cvrf
около 5 лет назад

Security update for nodejs8

suse-cvrf
около 5 лет назад

Security update for nodejs8

rocky
почти 5 лет назад

Important: nodejs:10 security update