Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Rocky Linux 8 RLSA-2024:1687 Important: Nodejs DoS Attack Fixes

rocky
Calendar Grey May 6, 2024
Rockylinux Esm H88
Node.js security patches tackle severe flaws in Rocky Linux. Discover the key resolutions that matter.
Important: nodejs:20 security update

Summary

An update is available for nodejs-nodemon, module.nodejs, nodejs, module.nodejs-nodemon, module.nodejs-packaging, nodejs-packaging. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RPMs

nodejs-1:20.11.1-1.module+el8.9.0+1776+addd4aec.aarch64.rpm

nodejs-1:20.11.1-1.module+el8.9.0+1776+addd4aec.src.rpm

nodejs-1:20.11.1-1.module+el8.9.0+1776+addd4aec.x86_64.rpm

nodejs-debuginfo-1:20.11.1-1.module+el8.9.0+1776+addd4aec.aarch64.rpm

nodejs-debuginfo-1:20.11.1-1.module+el8.9.0+1776+addd4aec.x86_64.rpm

nodejs-debugsource-1:20.11.1-1.module+el8.9.0+1776+addd4aec.aarch64.rpm

nodejs-debugsource-1:20.11.1-1.module+el8.9.0+1776+addd4aec.x86_64.rpm

nodejs-devel-1:20.11.1-1.module+el8.9.0+1776+addd4aec.aarch64.rpm

nodejs-devel-1:20.11.1-1.module+el8.9.0+1776+addd4aec.x86_64.rpm

nodejs-docs-1:20.11.1-1.module+el8.9.0+1776+addd4aec.noarch.rpm

nodejs-full-i18n-1:20.11.1-1.module+el8.9.0+1776+addd4aec.aarch64.rpm

nodejs-full-i18n-1:20.11.1-1.module+el8.9.0+1776+addd4aec.x86_64.rpm

nodejs-nodemon-0:3.0.1-1.module+el8.8.0+1459+02651ab6.noarch.rpm

nodejs-nodemon-0:3.0.1-1.module+el8.8.0+1459+02651ab6.src.rpm

nodejs-packaging-0:2021.06-4.module+el8.7.0+1072+5b168780.noarch.rpm

Read the Full Advisory

References

No references

CVES

https://www.cve.org/CVERecord?id=CVE-2023-46809

https://www.cve.org/CVERecord?id=CVE-2024-21890

https://www.cve.org/CVERecord?id=CVE-2024-21891

https://www.cve.org/CVERecord?id=CVE-2024-21892

https://www.cve.org/CVERecord?id=CVE-2024-21896

https://www.cve.org/CVERecord?id=CVE-2024-22017

https://www.cve.org/CVERecord?id=CVE-2024-22019

Severity
important

Name: RLSA-2024:1687
Affected Products: Rocky Linux 8

Fixes

https://bugzilla.redhat.com/show_bug.cgi?id=2264569

https://bugzilla.redhat.com/show_bug.cgi?id=2264574

https://bugzilla.redhat.com/show_bug.cgi?id=2264582

https://bugzilla.redhat.com/show_bug.cgi?id=2265717

https://bugzilla.redhat.com/show_bug.cgi?id=2265720

https://bugzilla.redhat.com/show_bug.cgi?id=2265722

https://bugzilla.redhat.com/show_bug.cgi?id=2265727


Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here