Oval Definition:
oval:org.opensuse.security:def:111863
Revision Date
:
2022-01-14
Version
:
1
Title
:
Security update for nodejs14 (Moderate) (in QA)
Description
:
This update for nodejs14 fixes the following issues:
- CVE-2021-44531: Fixed improper handling of URI Subject Alternative Names (bsc#1194511). - CVE-2021-44532: Fixed certificate Verification Bypass via String Injection (bsc#1194512). - CVE-2021-44533: Fixed incorrect handling of certificate subject and issuer fields (bsc#1194513). - CVE-2022-21824: Fixed prototype pollution via console.table properties (bsc#1194514).
This patch is currently in QA and not yet available for download.
Family
:
unix
Class
:
patch
Status
:
Reference(s)
:
1194511
1194512
1194513
1194514
CVE-2021-44531
CVE-2021-44532
CVE-2021-44533
CVE-2022-21824
Platform(s)
:
openSUSE Leap 15.3
Product(s)
:
Definition Synopsis
openSUSE Leap 15.3 is installed
AND
Package Information
nodejs14-14.18.3-15.24.1 is installed
OR
nodejs14-devel-14.18.3-15.24.1 is installed
OR
nodejs14-docs-14.18.3-15.24.1 is installed
OR
npm14-14.18.3-15.24.1 is installed
BACK