Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-39447

Please backport fixes for CVE-2024-22025 CVE-2024-25629 CVE-2024-27983 CVE-2024-28182 CVE-2024-27982

    • Icon: Bug Bug
    • Resolution: Won't Do
    • Icon: Undefined Undefined
    • None
    • CentOS Stream 9
    • nodejs
    • None
    • None
    • None
    • rhel-sst-pt-python-ruby-nodejs
    • ssg_core_services
    • None
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • All
    • None

      What were you trying to do that didn't work?

      The nodejs package in CentOS Stream 9 is currently missing fixes for several CVEs: CVE-2024-22025 CVE-2024-25629 CVE-2024-27983 CVE-2024-28182 CVE-2024-27982

      Relevant RHSA: https://access.redhat.com/errata/RHSA-2024:2910

      Please provide the package NVR for which bug is seen:

      nodejs-16.20.2-3.el9

      How reproducible:

      always

      Steps to reproduce

      1.  
      2.  
      3.  

      Expected results

      Actual results

              nodejs-maint nodejs-maint
              dcavalca Davide Cavalca
              nodejs-maint nodejs-maint
              bot rhel-cs-apps-subsystem-qe bot rhel-cs-apps-subsystem-qe
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated:
                Resolved: