[CLSA-2026:1779874135] Fix CVE(s): CVE-2026-21712
Type:
security
Severity:
Moderate
Release date:
2026-05-27 09:29:01 UTC
Description:
* SECURITY UPDATE: assertion failure in url.format() on malformed IDN - debian/patches/CVE-2026-21712.patch: return original href when ada::parse fails instead of CHECK(out) crash in BindingData::Format - CVE-2026-21712
Updated packages:
  • alt-nodejs20-docs_20.20.2-2_amd64.deb
    sha:873369a5ee676dd818b07eb87e4e633e2bbb4a08
  • alt-nodejs20-nodejs_20.20.2-2_amd64.deb
    sha:44c8a0b47825204e66152f57794b857be95e1cc4
  • alt-nodejs20-nodejs-devel_20.20.2-2_amd64.deb
    sha:2f76d2e059c88197fa510315d9ccab605a0d902d
  • alt-nodejs20-npm_10.8.2-20.20.2-2_amd64.deb
    sha:1672b6e29cf715ccd0da70eca819e441ffee3139
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.