Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 428
Alerts This Week
Warning Icon 1 428

Rocky Linux 9 RLSA-2023:3577 Important Nodejs Denial of Service Threat

rocky
Calendar Grey June 24, 2023
Scroller Rockylinux
Urgent security patch for nodejs:18 on Rocky Linux resolves various vulnerabilities, providing crucial improvements.
Important: nodejs:18 security update

Summary

An update is available for nodejs-nodemon, module.nodejs, nodejs, module.nodejs-nodemon, module.nodejs-packaging, nodejs-packaging. This update affects Rocky Linux 9. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RPMs

nodejs-1:18.14.2-3.module+el9.2.0+14843+acebbfea.aarch64.rpm

nodejs-1:18.14.2-3.module+el9.2.0+14843+acebbfea.ppc64le.rpm

nodejs-1:18.14.2-3.module+el9.2.0+14843+acebbfea.s390x.rpm

nodejs-1:18.14.2-3.module+el9.2.0+14843+acebbfea.src.rpm

nodejs-1:18.14.2-3.module+el9.2.0+14843+acebbfea.x86_64.rpm

nodejs-debuginfo-1:18.14.2-3.module+el9.2.0+14843+acebbfea.aarch64.rpm

nodejs-debuginfo-1:18.14.2-3.module+el9.2.0+14843+acebbfea.ppc64le.rpm

nodejs-debuginfo-1:18.14.2-3.module+el9.2.0+14843+acebbfea.s390x.rpm

nodejs-debuginfo-1:18.14.2-3.module+el9.2.0+14843+acebbfea.x86_64.rpm

nodejs-debugsource-1:18.14.2-3.module+el9.2.0+14843+acebbfea.aarch64.rpm

nodejs-debugsource-1:18.14.2-3.module+el9.2.0+14843+acebbfea.ppc64le.rpm

nodejs-debugsource-1:18.14.2-3.module+el9.2.0+14843+acebbfea.s390x.rpm

nodejs-debugsource-1:18.14.2-3.module+el9.2.0+14843+acebbfea.x86_64.rpm

nodejs-devel-1:18.14.2-3.module+el9.2.0+14843+acebbfea.aarch64.rpm

nodejs-devel-1:18.14.2-3.module+el9.2.0+14843+acebbfea.ppc64le.rpm

Read the Full Advisory

References

No references

CVES

https://www.cve.org/CVERecord?id=CVE-2023-31124

https://www.cve.org/CVERecord?id=CVE-2023-31130

https://www.cve.org/CVERecord?id=CVE-2023-31147

https://www.cve.org/CVERecord?id=CVE-2023-32067

Severity
important
Lowest
Low
Medium
High
Critical

Name: RLSA-2023:3577
Affected Products: Rocky Linux 9

Fixes

https://bugzilla.redhat.com/show_bug.cgi?id=2209494

https://bugzilla.redhat.com/show_bug.cgi?id=2209497

https://bugzilla.redhat.com/show_bug.cgi?id=2209501

https://bugzilla.redhat.com/show_bug.cgi?id=2209502


Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.