Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

SUSE: 2022:3219-1 Critical Fix for bci/nodejs DNS Problem Resolved

suse
Calendar Grey November 29, 2022
Dist Suse Esm H88
This security announcement pertains to vital enhancements for the SUSE bci/python container, featuring resolutions for vulnerabilities related to improper parsing of URLs.
The container bci/nodejs was updated

Summary

Advisory ID: SUSE-SU-2022:4255-1 Released: Mon Nov 28 12:30:26 2022 Summary: Security update for nodejs14 Type: security Severity: important Advisory ID: SUSE-RU-2022:4256-1 Released: Mon Nov 28 12:36:32 2022 Summary: Recommended update for gcc12 Type: recommended Severity: moderate

References

References : 1205119 CVE-2022-43548

1205119,CVE-2022-43548

This update for nodejs14 fixes the following issues:

- Update to 14.21.1:

- CVE-2022-43548: Fixed DNS rebinding in --inspect via invalid octal IP address (bsc#1205119).

- Update to 14.21.0:

- src: add --openssl-shared-config option

This update for gcc12 fixes the following issues:

This update ship the GCC 12 compiler suite and its base libraries.

The compiler baselibraries are provided for all SUSE Linux Enterprise 15

versions and replace the same named GCC 11 ones.

The new compilers for C, C++, and Fortran are provided for SUSE Linux

Enterprise 15 SP3 and SP4, and provided in the 'Development Tools' module.

The Go, D and Ada language compiler parts are available unsupported via the

PackageHub repositories.

To use gcc12 compilers use:

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2022:3219-1
Container Tags : bci/node:14 , bci/node:14-35.43 , bci/nodejs:14 , bci/nodejs:14-35.43
Container Release : 35.43
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here