Alerts This Week
Warning Icon 1 588
Alerts This Week
Warning Icon 1 588

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":563,"type":"x","order":1,"pct":78.74,"resources":[]},{"id":484,"title":"Formal training or courses","votes":32,"type":"x","order":2,"pct":4.48,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.76,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.03,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
89

Fedora: 2020-595ce5e3cc Critical: Nodejs 12.14.1 Update for Locale Support

Update to 12.14.1 Add new subpackage `nodejs-full-i18n` to provide non-English locale and Unicode support.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-595ce5e3cc 2020-01-24 17:07:54.394618 --------------------------------------------------------------------------------Name : nodejs Product : Fedora 31 Version : 12.14.1 Release : 3.fc31 URL : https://nodejs.org/en/ Summary : JavaScript runtime Description : Node.js is a platform built on Chrome's JavaScript runtime for easily building fast, scalable network applications. Node.js uses an event-driven, non-blocking I/O model that makes it lightweight and efficient, perfect for data-intensive real-time applications that run across distributed devices. --------------------------------------------------------------------------------Update Information: Update to 12.14.1 Add new subpackage `nodejs-full-i18n` to provide non-English locale and Unicode support. --------------------------------------------------------------------------------ChangeLog: * Mon Jan 13 2020 Stephen Gallagher - 1:12.14.1-3 - Fix issue with header symlinks in v8-devel * Tue Jan 7 2020 Stephen Gallagher - 1:12.14.1-2 - Drop unneeded dependency on http-parser-devel * Tue Jan 7 2020 Stephen Gallagher - 1:12.14.1-1 - Update to 12.14.1 - https://github.com/nodejs/node/blob/v12.14.1/doc/changelogs/CHANGELOG_V12.md * Mon Jan 6 2020 Stephen Gallagher - 1:12.14.0-2 - Update to 12.14.0 - https://github.com/nodejs/node/blob/v12.14.0/doc/changelogs/CHANGELOG_V12.md - Add new subpackage nodejs-full-i18n to enable optional non-English locale support - Update documentation packaging for NPM * Mon Dec 2 2019 Stephen Gallagher - 1:12.13.1-1 - Update to 12.13.1 - https://github.com/nodejs/node/blob/v12.13.1/doc/changelogs/CHANGELOG_V12.md * Tue Oct 29 2019 Stephen Gallagher - 1:12.13.0-6 - Add proper i18n support * Tue Oct 29 2019 StephenGallagher - 1:12.13.0-5 - Fix issue with NPM docs being replaced with a symlink * Mon Oct 28 2019 Stephen Gallagher - 1:12.13.0-2 - Simplify npmrc default configuration * Mon Oct 28 2019 Stephen Gallagher - 1:12.13.0-1 - Update to 12.13.0 (LTS) - https://github.com/nodejs/node/blob/v12.13.0/doc/changelogs/CHANGELOG_V12.md - NPM no longer clobbers RPM-installed Node.js modules - Drop no-longer needed patch to suppress `npm update -g npm` message --------------------------------------------------------------------------------References: [ 1 ] Bug #1767147 - CVE-2019-17592 nodejs-csv-parse: regular expression denial of service [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1767147 [ 2 ] Bug #1788312 - CVE-2019-16776 nodejs: Arbitrary file write via constructed entry in the package.json bin field [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1788312 [ 3 ] Bug #1788306 - CVE-2019-16775 nodejs: Symlink reference outside of node_modules folder through the bin field upon installation [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1788306 [ 4 ] Bug #1788302 - CVE-2019-16777 nodejs: Global node_modules Binary Overwrite via npm CLI [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1788302 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-595ce5e3cc' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./ . The latest Fedora update for Node.js 12.14.1 introduces enhanced i18n capabilities and addresses various bugs to boost overall efficiency.. nodejs update, i18n support, Fedora security, JavaScript runtime. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jan 24, 2020 Critical Fedora
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":563,"type":"x","order":1,"pct":78.74,"resources":[]},{"id":484,"title":"Formal training or courses","votes":32,"type":"x","order":2,"pct":4.48,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.76,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.03,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here