UbuntuUpdates.org

Bugs fixes in "nodejs"

Origin Bug number Title Date fixed
CVE CVE-2020-8174 napi_get_value_string_*() allows various kinds of memory corruption in node < 10.21.0, 12.18.0, and < 14.4.0. 2023-09-19
CVE CVE-2020-8287 Node.js versions before 10.23.1, 12.20.1, 14.15.4, 15.5.1 allow two copies of a header field in an HTTP request (for example, two Transfer-Encoding h 2023-09-19
CVE CVE-2020-8265 Node.js versions before 10.23.1, 12.20.1, 14.15.4, 15.5.1 are vulnerable to a use-after-free bug in its TLS implementation. When writing to a TLS ena 2023-09-19
CVE CVE-2020-8174 napi_get_value_string_*() allows various kinds of memory corruption in node < 10.21.0, 12.18.0, and < 14.4.0. 2023-09-19
Launchpad 1863463 Firefox 75 requires nodejs \u003e= 10.19 2020-04-29
Launchpad 1798367 [SRU] nodejs should use openssl1.0 in testing as well 2018-10-29
Launchpad 1798367 [SRU] nodejs should use openssl1.0 in testing as well 2018-10-18
Launchpad 1779863 Ubuntu nodejs package isn't ABI compatible with mainline nodejs. 2018-09-26
Launchpad 1779863 Ubuntu nodejs package isn't ABI compatible with mainline nodejs. 2018-08-31
CVE CVE-2018-7161 All versions of Node.js 8.x, 9.x, and 10.x are vulnerable and the severity is HIGH. An attacker can cause a denial of service (DoS) by causing a node 2018-08-14
CVE CVE-2018-7161 All versions of Node.js 8.x, 9.x, and 10.x are vulnerable and the severity is HIGH. An attacker can cause a denial of service (DoS) by causing a node 2018-08-14
CVE CVE-2016-5325 CRLF injection vulnerability in the ServerResponse#writeHead function in Node.js 0.10.x before 0.10.47, 0.12.x before 0.12.16, 4.x before 4.6.0, and 2018-08-10
CVE CVE-2016-5325 CRLF injection vulnerability in the ServerResponse#writeHead function in Node.js 0.10.x before 0.10.47, 0.12.x before 0.12.16, 4.x before 4.6.0, and 2018-08-10
CVE CVE-2016-5325 CRLF injection vulnerability in the ServerResponse#writeHead function in Node.js 0.10.x before 0.10.47, 0.12.x before 0.12.16, 4.x before 4.6.0, and 2018-08-10
CVE CVE-2016-5325 CRLF injection vulnerability in the ServerResponse#writeHead function in Node.js 0.10.x before 0.10.47, 0.12.x before 0.12.16, 4.x before 4.6.0, and 2018-08-10
Launchpad 892034 [FFe] Please merge nodejs (0.6.12~dfsg1-1) from Deb... 2012-04-03



About   -   Send Feedback to @ubuntu_updates