Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

SUSE: 2023:2197-1 Critical bci/nodejs Security Update Notification

suse
Calendar Grey June 29, 2023
Dist Suse Esm H88
Critical patch released for the bci/nodejs image rectifying various flaws and notable security threats.
The container bci/nodejs was updated

Summary

Advisory ID: SUSE-SU-2023:2669-1 Released: Wed Jun 28 09:24:41 2023 Summary: Security update for nodejs18 Type: security Severity: important

References

References : 1208744 1211407 1211604 1211605 1211606 1211607 1212574 1212579

1212581 1212582 1212583 CVE-2022-25881 CVE-2023-30581 CVE-2023-30585

CVE-2023-30588 CVE-2023-30589 CVE-2023-30590 CVE-2023-31124 CVE-2023-31130

CVE-2023-31147 CVE-2023-32067

1208744,1211407,1211604,1211605,1211606,1211607,1212574,1212579,1212581,1212582,1212583,CVE-2022-25881,CVE-2023-30581,CVE-2023-30585,CVE-2023-30588,CVE-2023-30589,CVE-2023-30590,CVE-2023-31124,CVE-2023-31130,CVE-2023-31147,CVE-2023-32067

This update for nodejs18 fixes the following issues:

Update to version 18.16.1:

- CVE-2023-30581: Fixed mainModule.__proto__ Bypass Experimental Policy Mechanism (bsc#1212574).

Severity
important
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2023:2197-1
Container Tags : bci/node:18 , bci/node:18-7.2 , bci/nodejs:18 , bci/nodejs:18-7.2
Container Release : 7.2
Severity : important
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here