Lucene search
Basic search
Lucene search
Search by product
Subscribe
K
Start 30-day trial
Database
Vendors
Products
Years
CVSS
Scanner
Agent Scanning
API Scanning
Manual Audit
Perimeter Scanner
Scanning
Projects
Email
Webhook
Plugins
Resources
Documents
Blog
Glossary
FAQ
Pricing
Contacts
About Us
Partners
Branding Guideline
SIGN IN
OracleLinux
ELSA-2021-3666
History
Sep 27, 2021 - 12:00 a.m.
nodejs:14 security and bug fix update
Vulners
Oraclelinux
nodejs:14 security and bug fix update
2021-09-27
00:00:00
linux.oracle.com
33
0.015 Low
EPSS
Percentile
87.2%
JSON
nodejs
[1:14.17.5-1]
Resolves CVE-2021-22930, CVE-2021-22931, CVE-2021-22939, CVE-2021-22940,
CVE-2021-23343, CVE-2021-32803, CVE-2021-32804, CVE-2021-3672
Resolves RHBZ#1847529 (make FIPS always available)
Resolves: RHBZ#1988599, RHBZ#1994000, RHBZ#1993998, RHBZ#1993095
Resolves: RHBZ#1994028, RHBZ#1994402, RHBZ#1994406, RHBZ#1994398
Resolves: RHBZ#1993924 (make FIPS always available)
[1:14.17.3-3]
Resolves: RHBZ#1991584, RHBZ#1991578
Resolves CVE-2021-23362 CVE-2021-27290
Bump for missing mentions of CVEs
Affected Package
OS
Version
Architecture
Package
Version
Filename
oracle linux
8
src
nodejs
< 14.17.5-1.module
nodejs-14.17.5-1.module+el8.4.0+20313+f90c2973.src.rpm
oracle linux
8
src
nodejs-nodemon
< 2.0.3-1.module
nodejs-nodemon-2.0.3-1.module+el8.3.0+7818+6cd30d85.src.rpm
oracle linux
8
src
nodejs-packaging
< 23-3.module
nodejs-packaging-23-3.module+el8.3.0+7818+6cd30d85.src.rpm
oracle linux
8
aarch64
nodejs
< 14.17.5-1.module
nodejs-14.17.5-1.module+el8.4.0+20313+f90c2973.aarch64.rpm
oracle linux
8
aarch64
nodejs-devel
< 14.17.5-1.module
nodejs-devel-14.17.5-1.module+el8.4.0+20313+f90c2973.aarch64.rpm
oracle linux
8
noarch
nodejs-docs
< 14.17.5-1.module
nodejs-docs-14.17.5-1.module+el8.4.0+20313+f90c2973.noarch.rpm
oracle linux
8
aarch64
nodejs-full-i18n
< 14.17.5-1.module
nodejs-full-i18n-14.17.5-1.module+el8.4.0+20313+f90c2973.aarch64.rpm
oracle linux
8
noarch
nodejs-nodemon
< 2.0.3-1.module
nodejs-nodemon-2.0.3-1.module+el8.3.0+7818+6cd30d85.noarch.rpm
oracle linux
8
noarch
nodejs-packaging
< 23-3.module
nodejs-packaging-23-3.module+el8.3.0+7818+6cd30d85.noarch.rpm
oracle linux
8
aarch64
npm
< 6.14.14-1.14.17.5.1.module
npm-6.14.14-1.14.17.5.1.module+el8.4.0+20313+f90c2973.aarch64.rpm
Rows per page:
10
1-10 of 20
1
Related
nessus 43
osv 16
almalinux 2
rocky 2
oraclelinux 1
redhat 6
openvas 33
suse 11
freebsd 1
ibm 28
nodejsblog 1
altlinux 2
gentoo 1
photon 2
ubuntucve 4
debiancve 4
prion 4
cve 3
alpinelinux 2
redhatcve 6
nvd 3
cvelist 3
github 2
archlinux 2
f5 1
debian 1
mageia 2
veracode 4
cbl_mariner 5
nodejs 3
hackerone 1
nessus
nessus
43
Oracle Linux 8 : nodejs:14 (ELSA-2021-3666)
2021-09-27 00:00:00
Oracle Linux 8 : nodejs:12 (ELSA-2021-3623)
2021-09-22 00:00:00
Rocky Linux 8 : nodejs:14 (RLSA-2021:3666)
2022-02-09 00:00:00
osv
osv
16
Important: nodejs:14 security and bug fix update
2021-09-27 06:47:35
Important: nodejs:14 security and bug fix update
2021-09-27 06:47:35
Important: nodejs:12 security and bug fix update
2021-09-21 12:33:58
almalinux
almalinux
Important: nodejs:12 security and bug fix update
2021-09-21 12:33:58
Important: nodejs:14 security and bug fix update
2021-09-27 06:47:35
rocky
rocky
nodejs:12 security and bug fix update
2021-09-21 12:33:58
nodejs:14 security and bug fix update
2021-09-27 06:47:35
oraclelinux
oraclelinux
nodejs:12 security and bug fix update
2021-09-22 00:00:00
redhat
redhat
6
(RHSA-2021:3666) Important: nodejs:14 security and bug fix update
2021-09-27 06:47:35
(RHSA-2021:3623) Important: nodejs:12 security and bug fix update
2021-09-21 12:33:58
(RHSA-2021:3280) Important: rh-nodejs14-nodejs and rh-nodejs14-nodejs-nodemon security update
2021-08-26 09:51:14
openvas
openvas
33
openSUSE: Security Advisory for nodejs14 (openSUSE-SU-2021:3211-1)
2021-09-24 00:00:00
openSUSE: Security Advisory for nodejs14 (openSUSE-SU-2021:1313-1)
2021-09-29 00:00:00
SUSE: Security Advisory (SUSE-SU-2021:2824-1)
2021-08-25 00:00:00
suse
suse
11
Security update for nodejs14 (important)
2021-09-23 00:00:00
Security update for nodejs14 (important)
2021-09-28 00:00:00
Security update for nodejs12 (important)
2021-08-31 00:00:00
freebsd
freebsd
Node.js -- August 2021 Security Releases
2021-08-11 00:00:00
ibm
ibm
28
Security Bulletin: IBM Cloud Pak for Integration is vulnerable to multiple Node.js vulnerabilities
2021-10-22 14:03:57
Security Bulletin: IBM Event Streams UI affected by multiple node package vulnerabilities
2021-12-21 17:39:35
Security Bulletin: IBM QRadar Use Case Manager app is vulnerable to using components with known vulnerabilities
2022-04-20 14:01:14
nodejsblog
nodejsblog
August 2021 Security Releases
2021-08-11 00:00:00
altlinux
altlinux
Security fix for the ALT Linux 10 package node version 14.17.5-alt1
2021-08-17 00:00:00
Security fix for the ALT Linux 10 package node version 14.17.4-alt1
2021-08-02 00:00:00
gentoo
gentoo
c-ares: Multiple Vulnerabilities
2024-01-05 00:00:00
photon
photon
Critical Photon OS Security Update - PHSA-2021-0090
2021-08-27 00:00:00
Critical Photon OS Security Update - PHSA-2021-4.0-0090
2021-08-27 00:00:00
ubuntucve
ubuntucve
4
CVE-2021-32804
2021-08-03 00:00:00
CVE-2021-22931
2021-08-16 00:00:00
CVE-2021-22940
2021-08-16 00:00:00
debiancve
debiancve
4
CVE-2021-32804
2021-08-03 19:15:08
CVE-2021-22940
2021-08-16 19:15:13
CVE-2021-22931
2021-08-16 19:15:13
prion
prion
4
Design/Logic Flaw
2021-08-03 19:15:00
Memory corruption
2021-08-16 19:15:00
Code injection
2021-05-04 09:15:00
cve
cve
CVE-2021-32804
2021-08-03 19:15:08
CVE-2021-23343
2021-05-04 09:15:07
CVE-2021-32803
2021-08-03 19:15:08
alpinelinux
alpinelinux
CVE-2021-32804
2021-08-03 19:15:08
CVE-2021-32803
2021-08-03 19:15:08
redhatcve
redhatcve
6
CVE-2021-22940
2021-08-12 10:21:15
CVE-2021-23343
2021-05-04 14:31:14
CVE-2021-22930
2021-07-30 14:01:23
nvd
nvd
CVE-2021-32804
2021-08-03 19:15:08
CVE-2021-23343
2021-05-04 09:15:07
CVE-2021-22940
2021-08-16 19:15:13
cvelist
cvelist
CVE-2021-32804 Arbitrary File Creation/Overwrite due to insufficient absolute path sanitization
2021-08-03 19:10:12
CVE-2021-23343 Regular Expression Denial of Service (ReDoS)
2021-05-04 00:00:00
CVE-2021-32803 Arbitrary File Creation/Overwrite via insufficient symlink protection due to directory cache poisoning
2021-08-03 19:05:12
github
github
Arbitrary File Creation/Overwrite due to insufficient absolute path sanitization
2021-08-03 19:06:36
Regular Expression Denial of Service in path-parse
2021-08-10 15:33:47
archlinux
archlinux
[ASA-202110-6] nodejs-lts-erbium: multiple issues
2021-10-21 00:00:00
[ASA-202110-5] nodejs-lts-fermium: multiple issues
2021-10-21 00:00:00
f5
f5
K53225395 : Node.js vulnerabilities CVE-2021-3672 and CVE-2021-22931
2021-10-15 00:00:00
debian
debian
[SECURITY] [DLA 3137-1] nodejs security update
2022-10-05 15:18:22
mageia
mageia
Updated nodejs packages fix security vulnerability
2021-10-06 22:41:56
Updated nodejs-tar packages fix security vulnerability
2022-03-21 23:18:30
veracode
veracode
4
Regular Expression Denial Of Service (ReDoS)
2021-05-05 05:46:25
Denial Of Service
2021-08-13 18:57:31
Privilege Escalation
2021-08-05 05:45:17
cbl_mariner
cbl_mariner
5
CVE-2021-22940 affecting package nodejs for versions less than 16.14.0-1
2022-04-09 06:52:23
CVE-2021-22940 affecting package nodejs 14.17.2-1
2021-09-09 15:03:07
CVE-2021-22931 affecting package nodejs 14.17.2-1
2021-09-09 15:03:07
nodejs
nodejs
Arbitrary File Creation/Overwrite via insufficient symlink protection due to directory cache poisoning
2021-08-03 18:14:17
Arbitrary File Creation/Overwrite due to insufficient absolute path sanitization
2021-08-03 18:11:06
Regular Expression Denial of Service in path-parse
2021-08-10 15:59:47
hackerone
hackerone
Node.js: Improper handling of untypical characters in domain names
2021-04-28 14:07:26
0.015 Low
EPSS
Percentile
87.2%
JSON
Related for ELSA-2021-3666
nessus
43
osv
16
almalinux
2
rocky
2
oraclelinux
1
redhat
6
openvas
33
suse
11
freebsd
1
ibm
28
nodejsblog
1
altlinux
2
gentoo
1
photon
2
ubuntucve
4
debiancve
4
prion
4
cve
3
alpinelinux
2
redhatcve
6
nvd
3
cvelist
3
github
2
archlinux
2
f5
1
debian
1
mageia
2
veracode
4
cbl_mariner
5
nodejs
3
hackerone
1