Advisory ID: SUSE-SU-2022:2491-1 Released: Thu Jul 21 14:34:35 2022 Summary: Security update for nodejs16 Type: security Severity: important Advisory ID: SUSE-RU-2022:2493-1 Released: Thu Jul 21 14:35:08 2022 Summary: Recommended update for rpm-config-SUSE Type: recommended Severity: moderate Advisory ID: SUSE-RU-2022:2494-1 Released: Thu Jul 21 15:16:42 2022 Summary: Recommended update for glibc
References : 1193282 1200855 1201325 1201326 1201327 1201328 1201560 1201640
CVE-2022-32212 CVE-2022-32213 CVE-2022-32214 CVE-2022-32215
1201325,1201326,1201327,1201328,CVE-2022-32212,CVE-2022-32213,CVE-2022-32214,CVE-2022-32215
This update for nodejs16 fixes the following issues:
- CVE-2022-32212: Fixed DNS rebinding in --inspect via invalid IP addresses (bsc#1201328).
- CVE-2022-32213: Fixed HTTP request smuggling due to flawed parsing of Transfer-Encoding (bsc#1201325).
- CVE-2022-32214: Fixed HTTP request smuggling due to improper delimiting of header fields (bsc#1201326).
- CVE-2022-32215: Fixed HTTP request smuggling due to incorrect parsing of multi-line Transfer-Encoding (bsc#1201327).
1193282
This update for rpm-config-SUSE fixes the following issues:
Get the latest Linux and open source security news straight to your inbox.