Lucene search
Basic search
Lucene search
Search by product
Subscribe
K
Start 30-day trial
Database
Vendors
Products
Years
CVSS
Scanner
Agent Scanning
API Scanning
Manual Audit
Perimeter Scanner
Scanning
Projects
Email
Webhook
Plugins
Resources
Documents
Blog
Glossary
FAQ
Pricing
Contacts
About Us
Partners
Branding Guideline
SIGN IN
OracleLinux
ELSA-2022-0350
History
Feb 02, 2022 - 12:00 a.m.
nodejs:14 security, bug fix, and enhancement update
Vulners
Oraclelinux
nodejs:14 security, bug fix, and enhancement update
2022-02-02
00:00:00
linux.oracle.com
32
0.012 Low
EPSS
Percentile
85.6%
JSON
nodejs
[1:14.18.2-2]
Add missing fixes
Resolves: RHBZ#2027642, RHBZ#2027635
[1:14.18.2-1]
Resolves: RHBZ#2027609
Resolves: RHBZ#2027649, RHBZ#2027646, RHBZ#2027642, RHBZ#2027635
Rebase to new version to fix CVEs
Affected Package
OS
Version
Architecture
Package
Version
Filename
oracle linux
8
src
nodejs
< 14.18.2-2.module
nodejs-14.18.2-2.module+el8.5.0+20489+261d51d3.src.rpm
oracle linux
8
src
nodejs-nodemon
< 2.0.15-1.module
nodejs-nodemon-2.0.15-1.module+el8.5.0+20489+261d51d3.src.rpm
oracle linux
8
src
nodejs-packaging
< 23-3.module
nodejs-packaging-23-3.module+el8.3.0+7818+6cd30d85.src.rpm
oracle linux
8
aarch64
nodejs
< 14.18.2-2.module
nodejs-14.18.2-2.module+el8.5.0+20489+261d51d3.aarch64.rpm
oracle linux
8
aarch64
nodejs-devel
< 14.18.2-2.module
nodejs-devel-14.18.2-2.module+el8.5.0+20489+261d51d3.aarch64.rpm
oracle linux
8
noarch
nodejs-docs
< 14.18.2-2.module
nodejs-docs-14.18.2-2.module+el8.5.0+20489+261d51d3.noarch.rpm
oracle linux
8
aarch64
nodejs-full-i18n
< 14.18.2-2.module
nodejs-full-i18n-14.18.2-2.module+el8.5.0+20489+261d51d3.aarch64.rpm
oracle linux
8
noarch
nodejs-nodemon
< 2.0.15-1.module
nodejs-nodemon-2.0.15-1.module+el8.5.0+20489+261d51d3.noarch.rpm
oracle linux
8
noarch
nodejs-packaging
< 23-3.module
nodejs-packaging-23-3.module+el8.3.0+7818+6cd30d85.noarch.rpm
oracle linux
8
aarch64
npm
< 6.14.15-1.14.18.2.2.module
npm-6.14.15-1.14.18.2.2.module+el8.5.0+20489+261d51d3.aarch64.rpm
Rows per page:
10
1-10 of 20
1
Related
almalinux 3
nessus 35
rocky 4
redhat 6
osv 19
oraclelinux 2
openvas 17
suse 4
debian 3
fedora 3
ibm 36
freebsd 1
archlinux 3
mageia 3
altlinux 1
nodejsblog 1
redhatcve 6
nvd 7
prion 5
ubuntucve 6
debiancve 5
cvelist 5
cve 6
nodejs 4
veracode 6
github 4
alpinelinux 3
hackerone 1
almalinux
almalinux
Moderate: nodejs:14 security, bug fix, and enhancement update
2022-02-01 20:08:39
Moderate: nodejs:16 security, bug fix, and enhancement update
2021-12-15 19:09:29
Moderate: nodejs and nodejs-nodemon security and bug fix update
2022-09-20 00:00:00
nessus
nessus
35
RHEL 8 : nodejs:14 (RHSA-2022:0350)
2022-02-02 00:00:00
CentOS 8 : nodejs:14 (CESA-2022:0350)
2022-02-02 00:00:00
RHEL 8 : nodejs:14 (RHSA-2022:0246)
2022-01-26 00:00:00
rocky
rocky
4
nodejs:14 security, bug fix, and enhancement update
2022-02-01 20:08:39
nodejs:16 security, bug fix, and enhancement update
2021-12-15 19:09:29
12 bug fix and enhancement update
2022-06-21 11:47:44
redhat
redhat
6
(RHSA-2022:0246) Moderate: nodejs:14 security, bug fix, and enhancement update
2022-01-25 08:40:34
(RHSA-2022:0350) Moderate: nodejs:14 security, bug fix, and enhancement update
2022-02-01 20:08:39
(RHSA-2021:5171) Moderate: nodejs:16 security, bug fix, and enhancement update
2021-12-15 19:09:29
osv
osv
19
Moderate: nodejs:14 security, bug fix, and enhancement update
2022-02-01 20:08:39
Moderate: nodejs:14 security, bug fix, and enhancement update
2022-02-01 20:08:39
Moderate: nodejs:16 security, bug fix, and enhancement update
2021-12-15 19:09:29
oraclelinux
oraclelinux
nodejs:16 security, bug fix, and enhancement update
2021-12-16 00:00:00
nodejs and nodejs-nodemon security and bug fix update
2022-09-22 00:00:00
openvas
openvas
17
openSUSE: Security Advisory for nodejs12 (openSUSE-SU-2021:1574-1)
2022-02-08 00:00:00
openSUSE: Security Advisory for nodejs14 (openSUSE-SU-2021:1552-1)
2022-02-08 00:00:00
Debian: Security Advisory (DLA-3237-1)
2022-12-13 00:00:00
suse
suse
4
Security update for nodejs12 (important)
2021-12-06 00:00:00
Security update for nodejs14 (important)
2021-12-07 00:00:00
Security update for nodejs12 (important)
2021-12-12 00:00:00
debian
debian
[SECURITY] [DSA 5008-1] node-tar security update
2021-11-11 21:57:59
[SECURITY] [DLA 3237-1] node-tar security update
2022-12-12 14:15:54
[SECURITY] [DLA 2503-1] node-ini security update
2020-12-21 15:01:05
fedora
fedora
[SECURITY] Fedora 35 Update: nodejs-16.11.1-1.fc35
2021-10-29 23:27:03
[SECURITY] Fedora 33 Update: nodejs-14.18.1-1.fc33
2021-10-23 03:25:54
[SECURITY] Fedora 34 Update: nodejs-14.18.1-1.fc34
2021-10-23 03:22:47
ibm
ibm
36
Security Bulletin: IBM Watson Discovery for IBM Cloud Pak for Data affected by vulnerability in Node.js
2021-12-17 04:21:37
Security Bulletin: Vulnerabilities in Node.js affect IBM Business Automation Workflow and IBM Business Process Manager (BPM) - CVE-2021-22960, CVE-2021-22959
2022-01-26 08:18:02
Security Bulletin: IBM Cloud Pak for Integration is vulnerable to Node.js vulnerabilities (CVE-2021-22959 and CVE-2021-22960)
2022-01-13 15:45:49
freebsd
freebsd
Node.js -- October 2021 Security Releases
2021-10-12 00:00:00
archlinux
archlinux
[ASA-202110-4] nodejs: url request injection
2021-10-21 00:00:00
[ASA-202110-6] nodejs-lts-erbium: multiple issues
2021-10-21 00:00:00
[ASA-202110-5] nodejs-lts-fermium: multiple issues
2021-10-21 00:00:00
mageia
mageia
Updated nodejs packages fix security vulnerability
2021-12-30 19:41:51
Updated nodejs-tar packages fix security vulnerability
2022-03-21 23:18:30
Updated nodejs-ini package fixes a security vulnerability
2021-02-05 14:54:53
altlinux
altlinux
Security fix for the ALT Linux 10 package node version 14.18.2-alt1
2021-12-23 00:00:00
nodejsblog
nodejsblog
October 12th 2021 Security Releases
2021-10-12 00:00:00
redhatcve
redhatcve
6
CVE-2020-28469
2021-04-01 01:38:31
CVE-2021-33502
2021-05-25 14:57:29
CVE-2021-37701
2021-08-31 17:10:03
nvd
nvd
7
CVE-2020-28469
2021-06-03 16:15:07
CVE-2021-33502
2021-05-24 16:15:08
CVE-2021-37712
2021-08-31 17:15:08
prion
prion
5
Design/Logic Flaw
2021-06-03 16:15:00
Denial of service
2021-05-24 16:15:00
Design/Logic Flaw
2021-08-31 17:15:00
ubuntucve
ubuntucve
6
CVE-2021-33502
2021-05-24 00:00:00
CVE-2020-28469
2021-06-03 00:00:00
CVE-2021-37712
2021-08-31 00:00:00
debiancve
debiancve
5
CVE-2020-28469
2021-06-03 16:15:07
CVE-2021-33502
2021-05-24 16:15:08
CVE-2021-37701
2021-08-31 17:15:07
cvelist
cvelist
5
CVE-2021-33502
2021-05-24 15:42:34
CVE-2020-28469 Regular Expression Denial of Service (ReDoS)
2021-06-03 00:00:00
CVE-2021-37712 Arbitrary File Creation/Overwrite via insufficient symlink protection due to directory cache poisoning using symbolic links
2021-08-31 00:00:00
cve
cve
6
CVE-2021-33502
2021-05-24 16:15:08
CVE-2020-28469
2021-06-03 16:15:07
CVE-2020-7788
2020-12-11 11:15:11
nodejs
nodejs
4
Regular expression denial of service
2021-06-07 21:57:10
Regular Expression Denial of Service
2021-06-08 23:12:07
Arbitrary File Creation/Overwrite via insufficient symlink protection due to directory cache poisoning using symbolic links
2021-08-31 16:10:07
veracode
veracode
6
Regular Expression Denial Of Service (ReDoS)
2021-05-25 07:10:20
Regular Expression Denial Of Service (ReDoS)
2021-01-21 14:21:20
Symlink Attack
2021-09-01 04:59:17
github
github
4
ReDoS in normalize-url
2021-06-08 23:11:43
glob-parent vulnerable to Regular Expression Denial of Service in enclosure regex
2021-06-07 21:56:34
Arbitrary File Creation/Overwrite via insufficient symlink protection due to directory cache poisoning using symbolic links
2021-08-31 16:05:27
alpinelinux
alpinelinux
CVE-2021-22960
2021-11-03 20:15:08
CVE-2021-37712
2021-08-31 17:15:08
CVE-2021-37701
2021-08-31 17:15:07
hackerone
hackerone
Node.js: HTTP Request Smuggling due to accepting space before colon
2021-06-20 11:10:00
0.012 Low
EPSS
Percentile
85.6%
JSON
Related for ELSA-2022-0350
almalinux
3
nessus
35
rocky
4
redhat
6
osv
19
oraclelinux
2
openvas
17
suse
4
debian
3
fedora
3
ibm
36
freebsd
1
archlinux
3
mageia
3
altlinux
1
nodejsblog
1
redhatcve
6
nvd
7
prion
5
ubuntucve
6
debiancve
5
cvelist
5
cve
6
nodejs
4
veracode
6
github
4
alpinelinux
3
hackerone
1