[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2022:2425-1 -- SLES nodejs14, npm14

ID: oval:org.secpod.oval:def:89046793Date: (C)2022-07-20   (M)2024-04-17
Class: PATCHFamily: unix




This update for nodejs14 fixes the following issues: - CVE-2022-32212: Fixed DNS rebinding in --inspect via invalid IP addresses . - CVE-2022-32213: Fixed HTTP request smuggling due to flawed parsing of Transfer-Encoding . - CVE-2022-32214: Fixed HTTP request smuggling due to improper delimiting of header fields . - CVE-2022-32215: Fixed HTTP request smuggling due to incorrect parsing of multi-line Transfer-Encoding .

Platform:
SUSE Linux Enterprise Server 15 SP2
Product:
nodejs14
npm14
Reference:
SUSE-SU-2022:2425-1
CVE-2022-32212
CVE-2022-32213
CVE-2022-32214
CVE-2022-32215
CVE    4
CVE-2022-32212
CVE-2022-32213
CVE-2022-32214
CVE-2022-32215
...

© SecPod Technologies