Oval Definition:oval:org.opensuse.security:def:110413
Revision Date:2020-03-03Version:1
Title:Security update for nodejs8 (Important)
Description:

This update for nodejs8 fixes the following issues:

Security issues fixed:

- CVE-2019-15604: Fixed a remotely triggerable assertion in the TLS server via a crafted certificate string (CVE-2019-15604, bsc#1163104). - CVE-2019-15605: Fixed an HTTP request smuggling vulnerability via malformed Transfer-Encoding header (CVE-2019-15605, bsc#1163102). - CVE-2019-15606: Fixed the white space sanitation of HTTP headers (CVE-2019-15606, bsc#1163103).

This update was imported from the SUSE:SLE-15:Update update project.
Family:unixClass:patch
Status:Reference(s):1163102
1163103
1163104
CVE-2019-15604
CVE-2019-15605
CVE-2019-15606
openSUSE-SU-2020:0293-1
Platform(s):openSUSE Leap 15.1
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • nodejs8-8.17.0-lp151.2.12.1 is installed
  • OR nodejs8-devel-8.17.0-lp151.2.12.1 is installed
  • OR nodejs8-docs-8.17.0-lp151.2.12.1 is installed
  • OR npm8-8.17.0-lp151.2.12.1 is installed
  • BACK