Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-1743

Опубликовано: 12 апр. 2023
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2023-1743: nodejs:14 security, bug fix, and enhancement update (IMPORTANT)

nodejs [1:14.21.3-1]

  • Rebase to 14.21.3 Resolves: rhbz#2153712 Resolves: CVE-2022-25881 CVE-2023-23918 CVE-2023-23920 CVE-2022-38900 Resolves: CVE-2022-4904

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

Module nodejs:14 is enabled

nodejs

14.21.3-1.module+el8.7.0+21031+52889874

nodejs-devel

14.21.3-1.module+el8.7.0+21031+52889874

nodejs-docs

14.21.3-1.module+el8.7.0+21031+52889874

nodejs-full-i18n

14.21.3-1.module+el8.7.0+21031+52889874

nodejs-nodemon

2.0.20-3.module+el8.7.0+21031+52889874

nodejs-packaging

23-3.module+el8.3.0+7818+6cd30d85

npm

6.14.18-1.14.21.3.1.module+el8.7.0+21031+52889874

Oracle Linux x86_64

Module nodejs:14 is enabled

nodejs

14.21.3-1.module+el8.7.0+21031+52889874

nodejs-devel

14.21.3-1.module+el8.7.0+21031+52889874

nodejs-docs

14.21.3-1.module+el8.7.0+21031+52889874

nodejs-full-i18n

14.21.3-1.module+el8.7.0+21031+52889874

nodejs-nodemon

2.0.20-3.module+el8.7.0+21031+52889874

nodejs-packaging

23-3.module+el8.3.0+7818+6cd30d85

npm

6.14.18-1.14.21.3.1.module+el8.7.0+21031+52889874

Связанные уязвимости

oracle-oval
около 2 лет назад

ELSA-2023-2654: nodejs:18 security, bug fix, and enhancement update (MODERATE)

oracle-oval
около 2 лет назад

ELSA-2023-1582: nodejs:16 security, bug fix, and enhancement update (MODERATE)

CVSS3: 7.5
ubuntu
больше 2 лет назад

A vulnerability was found in the minimatch package. This flaw allows a Regular Expression Denial of Service (ReDoS) when calling the braceExpand function with specific arguments, resulting in a Denial of Service.

CVSS3: 7.5
redhat
больше 3 лет назад

A vulnerability was found in the minimatch package. This flaw allows a Regular Expression Denial of Service (ReDoS) when calling the braceExpand function with specific arguments, resulting in a Denial of Service.

CVSS3: 7.5
nvd
больше 2 лет назад

A vulnerability was found in the minimatch package. This flaw allows a Regular Expression Denial of Service (ReDoS) when calling the braceExpand function with specific arguments, resulting in a Denial of Service.