Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Oracle Linux 8 ELSA-2023-4536 Moderate: Node.js Security Fixes

oracle
Calendar Grey August 10, 2023
Oracle Linux Logo Esm H88
A security notice for Oracle Linux 8 has been released, featuring updates for Python that focus on fixing issues and introducing improvements.
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

Summary

nodejs [1:18.16.1-1] - Rebase to 18.16.1 Resolves: rhbz#2188290 rhbz#2166926 Resolves: CVE-2023-30581 CVE-2023-30588 CVE-2023-30589 CVE-2023-30590 - Replace /usr/etc/npmrc symlink with builtin configuration Resolves: rhbz#2222287 nodejs-nodemon nodejs-packaging [2021.06-4] - NPM bundler: also find namespaced bundled dependencies [2021.06-3] - Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild [2021.06-2] - Fix hard-coded output directory in the bundler [2021.06-1] - Update to 2021.06-1 - bundler: Handle archaic license metadata - bundler: Warn about bundled dependencies with no license metadata [2021.01-3] - Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild [2021.01-2] - nodejs-packaging-bundler improvements to handle uncommon characters [2021.01] - Add nodejs-packaging-bundler and update README.md [2020.09-1] - Move to dist-git as the upstream [25-1] - Fix incorrect bundled library detection for Requires [24-1] - Check node_modules_pr...

Read the Full Advisory

SRPMs

https://oss.oracle.com:443/ol8/SRPMS-updates//nodejs-18.16.1-1.module+el8.8.0+21140+54ee8b93.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//nodejs-nodemon-2.0.20-2.module+el8.8.0+21140+54ee8b93.src.rpm https://oss.oracle.com:443/ol8/SRPMS-updates//nodejs-packaging-2021.06-4.module+el8.7.0+20766+0a247725.src.rpm

x86_64

nodejs-18.16.1-1.module+el8.8.0+21140+54ee8b93.x86_64.rpm nodejs-devel-18.16.1-1.module+el8.8.0+21140+54ee8b93.x86_64.rpm nodejs-docs-18.16.1-1.module+el8.8.0+21140+54ee8b93.noarch.rpm nodejs-full-i18n-18.16.1-1.module+el8.8.0+21140+54ee8b93.x86_64.rpm nodejs-nodemon-2.0.20-2.module+el8.8.0+21140+54ee8b93.noarch.rpm nodejs-packaging-2021.06-4.module+el8.7.0+20766+0a247725.noarch.rpm nodejs-packaging-bundler-2021.06-4.module+el8.7.0+20766+0a247725.noarch.rpm npm-9.5.1-1.18.16.1.1.module+el8.8.0+21140+54ee8b93.x86_64.rpm

aarch64

nodejs-18.16.1-1.module+el8.8.0+21140+54ee8b93.aarch64.rpm nodejs-devel-18.16.1-1.module+el8.8.0+21140+54ee8b93.aarch64.rpm nodejs-docs-18.16.1-1.module+el8.8.0+21140+54ee8b93.noarch.rpm nodejs-full-i18n-18.16.1-1.module+el8.8.0+21140+54ee8b93.aarch64.rpm nodejs-nodemon-2.0.20-2.module+el8.8.0+21140+54ee8b93.noarch.rpm nodejs-packaging-2021.06-4.module+el8.7.0+20766+0a247725.noarch.rpm nodejs-packaging-bundler-2021.06-4.module+el8.7.0+20766+0a247725.noarch.rpm npm-9.5.1-1.18.16.1.1.module+el8.8.0+21140+54ee8b93.aarch64.rpm

Related CVEs: CVE-2023-30581 CVE-2023-30588 CVE-2023-30589 CVE-2023-30590

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here