Oval Definition:
oval:org.opensuse.security:def:110975
Revision Date
:
2021-07-19
Version
:
1
Title
:
Security update for nodejs14 (Important)
Description
:
This update for nodejs14 fixes the following issues:
Update nodejs14 to 14.17.2.
Including fixes for:
- CVE-2021-22918: libuv upgrade - Out of bounds read (bsc#1187973) - CVE-2021-27290: ssri Regular Expression Denial of Service (bsc#1187976) - CVE-2021-23362: hosted-git-info Regular Expression Denial of Service (bsc#1187977) - CVE-2020-7774: y18n Prototype Pollution (bsc#1184450)
This update was imported from the SUSE:SLE-15-SP2:Update update project.
Family
:
unix
Class
:
patch
Status
:
Reference(s)
:
1184450
1187973
1187976
1187977
CVE-2020-7774
CVE-2021-22918
CVE-2021-23362
CVE-2021-27290
openSUSE-SU-2021:1060-1
Platform(s)
:
openSUSE Leap 15.2
Product(s)
:
Definition Synopsis
openSUSE Leap 15.2 is installed
AND
Package Information
nodejs14-14.17.2-lp152.11.1 is installed
OR
nodejs14-devel-14.17.2-lp152.11.1 is installed
OR
nodejs14-docs-14.17.2-lp152.11.1 is installed
OR
npm14-14.17.2-lp152.11.1 is installed
BACK