[ubuntu/jammy-security] nodejs 12.22.9~dfsg-1ubuntu3.1 (Accepted)

Amir Naseredini amir.naseredini at canonical.com
Mon Oct 30 10:13:24 UTC 2023


nodejs (12.22.9~dfsg-1ubuntu3.1) jammy-security; urgency=medium

  * SECURITY UPDATE: Remote Code Execution
    - debian/patches/CVE-2022-1292.patch: fixed a remote code execution in
      openssl in nodejs
    - debian/patches/CVE-2022-2068.patch: fixed an arbitrary code execution in
      openssl in nodejs
    - debian/patches/CVE-2022-2097.patch: fixed a memory corruption in openssl
      in nodejs
    - CVE-2022-1292
    - CVE-2022-2068
    - CVE-2022-2097
  * SECURITY UPDATE: Denial of Service
    - debian/patches/CVE-2022-0778.patch: fixed an infinite loop in 
      BN_mod_sqrt module
    - CVE-2022-0778

Date: 2023-10-27 10:42:09.943666+00:00
Changed-By: Amir Naseredini <amir.naseredini at canonical.com>
https://launchpad.net/ubuntu/+source/nodejs/12.22.9~dfsg-1ubuntu3.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the jammy-changes mailing list