[CLSA-2025:1765908822] Fix CVE(s): CVE-2024-22025
Type:
security
Severity:
Moderate
Release date:
2025-12-16 18:13:46 UTC
Description:
* SECURITY UPDATE: Node.js zlib denial of service vulnerability - debian/patches/CVE-2024-22025.patch: pause stream if outgoing buffer is full to prevent resource exhaustion during decompression - CVE-2024-22025
Updated packages:
  • alt-nodejs14-docs_14.21.3-14_amd64.deb
    sha:411f4533479dd3a986cdcde2084fb7dbd05aade5
  • alt-nodejs14-nodejs_14.21.3-14_amd64.deb
    sha:bd3203fbc11dfbb6852d1d697a144a3563012c73
  • alt-nodejs14-nodejs-devel_14.21.3-14_amd64.deb
    sha:c05549936796dcc9ddcea97f62235c80d53a1507
  • alt-nodejs14-npm_6.14.18-14.21.3.14_amd64.deb
    sha:71be174726e2c7da3ba8140d6d6af6049ddb80a8
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.