Oval Definition:oval:org.opensuse.security:def:95410
Revision Date:2022-07-21Version:1
Title:Security update for nodejs16 (Important)
Description:

This update for nodejs16 fixes the following issues:

- CVE-2022-32212: Fixed DNS rebinding in --inspect via invalid IP addresses (bsc#1201328). - CVE-2022-32213: Fixed HTTP request smuggling due to flawed parsing of Transfer-Encoding (bsc#1201325). - CVE-2022-32214: Fixed HTTP request smuggling due to improper delimiting of header fields (bsc#1201326). - CVE-2022-32215: Fixed HTTP request smuggling due to incorrect parsing of multi-line Transfer-Encoding (bsc#1201327).
Family:unixClass:patch
Status:Reference(s):1189929
1201325
1201326
1201327
1201328
CVE-2021-37750
CVE-2022-32212
CVE-2022-32213
CVE-2022-32214
CVE-2022-32215
SUSE-SU-2022:2491-1
Platform(s):SUSE Linux Enterprise High Performance Computing 15 SP4
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2
SUSE Linux Enterprise Module for Web Scripting 15 SP4
SUSE Linux Enterprise Server 15 SP4
SUSE Linux Enterprise Server for SAP Applications 15 SP4
SUSE Manager Proxy 4.3
SUSE Manager Retail Branch Server 4.3
SUSE Manager Server 4.3
Product(s):
Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise High Performance Computing 15 SP4 is installed
  • OR SUSE Linux Enterprise Module for Web Scripting 15 SP4 is installed
  • OR SUSE Linux Enterprise Server 15 SP4 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP4 is installed
  • OR SUSE Manager Proxy 4.3 is installed
  • OR SUSE Manager Retail Branch Server 4.3 is installed
  • OR SUSE Manager Server 4.3 is installed
  • AND Package Information
  • nodejs16-16.16.0-150400.3.3.2 is installed
  • OR nodejs16-devel-16.16.0-150400.3.3.2 is installed
  • OR nodejs16-docs-16.16.0-150400.3.3.2 is installed
  • OR npm16-16.16.0-150400.3.3.2 is installed
  • BACK