elsa-2021-5171

oracle_linux
Description

nodejs [16.13.1-3.0.1] - Libraries must not be group-writeable. Change node-gyp permission to 0755 [Orabug: 28451433] [1:16.13.1-3] - Resolves: RHBZ#2027610 - Add corepack to spec [1:16.13.1-2] - Resolves: RHBZ#2027610 - Update npm version test [1:16.13.1-1] - Resolves: RHBZ#2027644, RHBZ#2027643, RHBZ#2027638, RHBZ#2027633 - Resolves: RHBZ#2027610 - Rebase to LTS release and to fix multiple low and medium CVEs nodejs-nodemon [2.0.15-1] - Resolves: RHBZ#2027630 - Resolves CVE-2020-28469 - Rebase to newest version - Change source to npmjs.com

Timeline
Published
unknown
Last Modified
unknown
CVSS Details

CVSS details not available.

Affected Products

No product information available.

References

No references available.

Linked Vulnerabilities

No linked vulnerabilities found.

{
  "cves": [
    "CVE-2020-7788",
    "CVE-2021-22959",
    "CVE-2020-28469",
    "CVE-2021-3807",
    "CVE-2021-22960",
    "CVE-2021-33502",
    "CVE-2021-3918"
  ],
  "cvss": 0.0,
  "database_specific": {
    "severity": "MODERATE"
  },
  "description": "nodejs\n[16.13.1-3.0.1]\n- Libraries must not be group-writeable. Change node-gyp permission to 0755 [Orabug: 28451433]\n\n[1:16.13.1-3]\n- Resolves: RHBZ#2027610\n- Add corepack to spec\n\n[1:16.13.1-2]\n- Resolves: RHBZ#2027610\n- Update npm version test\n\n[1:16.13.1-1]\n- Resolves: RHBZ#2027644, RHBZ#2027643, RHBZ#2027638, RHBZ#2027633\n- Resolves: RHBZ#2027610\n- Rebase to LTS release and to fix multiple low and medium CVEs\n\nnodejs-nodemon\n[2.0.15-1]\n- Resolves: RHBZ#2027630\n- Resolves CVE-2020-28469\n- Rebase to newest version\n- Change source to npmjs.com",
  "id": "ELSA-2021-5171",
  "ovalId": "oval:com.oracle.elsa:def:20215171",
  "source": "oracle_linux",
  "title": "ELSA-2021-5171:  nodejs:16 security, bug fix, and enhancement update (MODERATE)",
  "url": "https://linux.oracle.com/errata/ELSA-2021-5171.html"
}
View JSON API Download JSON