[CLSA-2025:1765547399] Fix CVE(s): CVE-2024-22019
Type:
security
Severity:
Important
Release date:
2025-12-12 13:50:02 UTC
Description:
* SECURITY UPDATE: Node.js SignTraits::DeriveBits() remote crash vulnerability - debian/patches/CVE-2024-22019.patch: fix improper exception handling in SignTraits::DeriveBits() that could lead to remote denial of service (process crash) when malformed input is processed - CVE-2024-22019
Updated packages:
  • alt-nodejs12-docs_12.22.12-10_amd64.deb
    sha:2833ddd4af45b929de7a77d67e8b11017012e71f
  • alt-nodejs12-nodejs_12.22.12-10_amd64.deb
    sha:b68384ff6029762e376f165839e1aabd0b013504
  • alt-nodejs12-nodejs-devel_12.22.12-10_amd64.deb
    sha:24b1aa69bdd0bd382c2a51fc8830ba73e07faed6
  • alt-nodejs12-npm_6.14.16-12.22.12.10_amd64.deb
    sha:a0aa6e6e22ec1a08847909a9b913d395bf608b38
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.