Oval Definition:oval:org.opensuse.security:def:111240
Revision Date:2021-02-27Version:1
Title:Security update for nodejs14 (Important)
Description:

This update for nodejs14 fixes the following issues:

- New upstream LTS version 14.16.0: * CVE-2021-22883: HTTP2 'unknownProtocol' cause Denial of Service by resource exhaustion (bsc#1182619) * CVE-2021-22884: DNS rebinding in --inspect (bsc#1182620)

This update was imported from the SUSE:SLE-15-SP2:Update update project.
Family:unixClass:patch
Status:Reference(s):1182619
1182620
CVE-2021-22883
CVE-2021-22884
openSUSE-SU-2021:0356-1
Platform(s):openSUSE Leap 15.2
Product(s):
Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • nodejs14-14.16.0-lp152.8.1 is installed
  • OR nodejs14-devel-14.16.0-lp152.8.1 is installed
  • OR nodejs14-docs-14.16.0-lp152.8.1 is installed
  • OR npm14-14.16.0-lp152.8.1 is installed
  • BACK