Oval Definition:oval:org.opensuse.security:def:111863
Revision Date:2022-01-14Version:1
Title:Security update for nodejs14 (Moderate) (in QA)
Description:

This update for nodejs14 fixes the following issues:

- CVE-2021-44531: Fixed improper handling of URI Subject Alternative Names (bsc#1194511). - CVE-2021-44532: Fixed certificate Verification Bypass via String Injection (bsc#1194512). - CVE-2021-44533: Fixed incorrect handling of certificate subject and issuer fields (bsc#1194513). - CVE-2022-21824: Fixed prototype pollution via console.table properties (bsc#1194514).

This patch is currently in QA and not yet available for download.
Family:unixClass:patch
Status:Reference(s):1194511
1194512
1194513
1194514
CVE-2021-44531
CVE-2021-44532
CVE-2021-44533
CVE-2022-21824
Platform(s):openSUSE Leap 15.3
Product(s):
Definition Synopsis
  • openSUSE Leap 15.3 is installed
  • AND Package Information
  • nodejs14-14.18.3-15.24.1 is installed
  • OR nodejs14-devel-14.18.3-15.24.1 is installed
  • OR nodejs14-docs-14.18.3-15.24.1 is installed
  • OR npm14-14.18.3-15.24.1 is installed
  • BACK