Alerts This Week
Warning Icon 1 700
Alerts This Week
Warning Icon 1 700

Fedora 43 nodejs20 Denial of Service Update Advisory FEDORA-2026-f601b2f60a

fedora
Calendar Grey January 31, 2026
Dist Fedora Esm H88
Update nodejs20 on Fedora 43 addresses multiple vulnerabilities including denial of service issues and more.
Update to version 20.20.0 Update to version 20.19.6

Summary

Node.js is a platform built on Chrome's JavaScript runtime \

for easily building fast, scalable network applications. \

Node.js uses an event-driven, non-blocking I/O model that \

makes it lightweight and efficient, perfect for data-intensive \

real-time applications that run across distributed devices.}

Update Information:

Update to version 20.20.0 Update to version 20.19.6

Change Log

* Mon Jan 19 2026 Jan Stan\u011bk - 1:20.20.0-2 - Diverge from rawhide * Tue Jan 13 2026 tjuhasz - 1:20.20.0-1 - Update to version 20.20.0 (rhbz#2428957) * Mon Dec 1 2025 tjuhasz - 1:20.19.6-1 - Update to version 20.19.6 (rhbz#2417008) * Wed Nov 12 2025 tjuhasz - 1:20.19.5-3 - Rebuild for nodejs-packaging

References


[ 1 ] Bug #2421307 - CVE-2025-62408 nodejs20: c-ares: Denial of Service due to query termination after maximum attempts [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2421307 [ 2 ] Bug #2430298 - CVE-2026-22036 nodejs20: Undici has an unbounded decompression chain in HTTP responses on Node.js Fetch API via Content-Encoding leads to resource exhaustion [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2430298 [ 3 ] Bug #2431454 - CVE-2025-55132 nodejs20: Nodejs filesystem permissions bypass [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2431454 [ 4 ] Bug #2431461 - CVE-2026-21637 nodejs20: Nodejs denial of service [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2431461 [ 5 ] Bug #2431468 - CVE-2025-59466 nodejs20: Nodejs denial of service [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2431468 [ 6 ] Bug #2431475 - CVE-2025-59464 nodejs20: Nodejs memory leak [fedora-43] https://bugzilla...

Read the Full Advisory

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-f601b2f60a' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: nodejs20
Product: Fedora 43
Version: 20.20.0
Release: 2.fc43
Summary: JavaScript runtime

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here