elsa-2026-41947

oracle_linux
Description

nodejs [1:22.23.1-1] - Update to version 22.23.1 Resolves: RHEL-176170 Fixes: CVE-2026-12151 CVE-2026-48618 CVE-2026-48933 CVE-2026-48937 CVE-2026-48930 CVE-2026-48619 CVE-2026-48615 CVE-2026-48934 CVE-2026-48928 CVE-2026-48617 CVE-2026-48931 CVE-2026-48935 CVE-2026-42338 nodejs-nodemon [3.0.1-1] - Exclude ix86 arches from building. Related: RHEL-35991 [3.0.1-1] - Rebase to 3.0.1 - Resolves: CVE-2022-25883 [2.0.20-2] - Patch bundled glob-parent - Resolves: CVE-2021-35065 [2.0.20-1] - Rebase to 2.0.20 Resolves: CVE-2022-3517 [2.0.15-1] - Resolves: RHBZ#2005419 - Resolves CVE-2020-28469 - Rebase to newest version - Change source to npmjs.com [2.0.7-1] - Resolves: RHBZ#1953991 - Update to 2.0.7 to resolve CVE-2020-28469 [2.0.3-1] - Updated [1.18.3-1] - Resolves: #1615413 - Updated - bundled [1.11.0-2] - rh-nodejs8 rebuild [1.11.0-1] - Updated with script nodejs-packaging [2021.06-4] - Exclude ix86 arches from building. Related: RHEL-35991 [2021.06-4] - NPM bundler: also find namespaced bundled dependencies [2021.06-3] - Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild [2021.06-2] - Fix hard-coded output directory in the bundler [2021.06-1] - Update to 2021.06-1 - bundler: Handle archaic license metadata - bundler: Warn about bundled dependencies with no license metadata [2021.01-3] - Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild [2021.01-2] - nodejs-packaging-bundler improvements to handle uncommon characters [2021.01] - Add nodejs-packaging-bundler and update README.md [2020.09-1] - Move to dist-git as the upstream [25-1] - Fix incorrect bundled library detection for Requires

Timeline
Published
unknown
Last Modified
unknown
CVSS Details

CVSS details not available.

Affected Products

No product information available.

References

No references available.

Linked Vulnerabilities

No linked vulnerabilities found.

{
  "cves": [
    "CVE-2026-11525",
    "CVE-2026-12151",
    "CVE-2026-42338",
    "CVE-2026-48615",
    "CVE-2026-48618",
    "CVE-2026-48619",
    "CVE-2026-48928",
    "CVE-2026-48930",
    "CVE-2026-48933",
    "CVE-2026-48934",
    "CVE-2026-48935",
    "CVE-2026-6733",
    "CVE-2026-9678"
  ],
  "cvss": 0.0,
  "database_specific": {
    "severity": "IMPORTANT"
  },
  "description": "nodejs\n[1:22.23.1-1]\n- Update to version 22.23.1\n  Resolves: RHEL-176170\n  Fixes: CVE-2026-12151 CVE-2026-48618 CVE-2026-48933 CVE-2026-48937 CVE-2026-48930 CVE-2026-48619 CVE-2026-48615 CVE-2026-48934 CVE-2026-48928 CVE-2026-48617 CVE-2026-48931 CVE-2026-48935 CVE-2026-42338\n\nnodejs-nodemon\n[3.0.1-1]\n- Exclude ix86 arches from building.\n  Related: RHEL-35991\n\n[3.0.1-1]\n- Rebase to 3.0.1\n- Resolves: CVE-2022-25883\n\n[2.0.20-2]\n- Patch bundled glob-parent\n- Resolves: CVE-2021-35065\n\n[2.0.20-1]\n- Rebase to 2.0.20\n  Resolves: CVE-2022-3517\n\n[2.0.15-1]\n- Resolves: RHBZ#2005419\n- Resolves CVE-2020-28469\n- Rebase to newest version\n- Change source to npmjs.com\n\n[2.0.7-1]\n- Resolves: RHBZ#1953991\n- Update to 2.0.7 to resolve CVE-2020-28469\n\n[2.0.3-1]\n- Updated\n\n[1.18.3-1]\n- Resolves: #1615413\n- Updated\n- bundled\n\n[1.11.0-2]\n- rh-nodejs8 rebuild\n\n[1.11.0-1]\n- Updated with script\n\nnodejs-packaging\n[2021.06-4]\n- Exclude ix86 arches from building.\n  Related: RHEL-35991\n\n[2021.06-4]\n- NPM bundler: also find namespaced bundled dependencies\n\n[2021.06-3]\n- Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild\n\n[2021.06-2]\n- Fix hard-coded output directory in the bundler\n\n[2021.06-1]\n- Update to 2021.06-1\n- bundler: Handle archaic license metadata\n- bundler: Warn about bundled dependencies with no license metadata\n\n[2021.01-3]\n- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild\n\n[2021.01-2]\n- nodejs-packaging-bundler improvements to handle uncommon characters\n\n[2021.01]\n- Add nodejs-packaging-bundler and update README.md\n\n[2020.09-1]\n- Move to dist-git as the upstream\n\n[25-1]\n- Fix incorrect bundled library detection for Requires",
  "id": "ELSA-2026-41947",
  "ovalId": "oval:com.oracle.elsa:def:202641947",
  "source": "oracle_linux",
  "title": "ELSA-2026-41947:  nodejs:22 security, bug fix, and enhancement update (IMPORTANT)",
  "url": "https://linux.oracle.com/errata/ELSA-2026-41947.html"
}
View JSON API Download JSON