[CLSA-2025:1766614018] Fix CVE(s): CVE-2023-45143
Type:
security
Severity:
Low
Release date:
2025-12-24 22:07:01 UTC
Description:
* SECURITY UPDATE: Node.js undici cross-origin redirect vulnerability - debian/patches/CVE-2023-45143.patch: clear Cookie and Host headers on cross-origin redirects to prevent sensitive data leakage - CVE-2023-45143
Updated packages:
  • alt-nodejs16-docs_16.20.2-9_amd64.deb
    sha:518f8ee45f398eee9c05a5679d8bb7f0510531fc
  • alt-nodejs16-nodejs_16.20.2-9_amd64.deb
    sha:7868a966d11418e8f12998bb9fe64324d1abc53f
  • alt-nodejs16-nodejs-devel_16.20.2-9_amd64.deb
    sha:6b2e6e95ce31204a347b5323fef48e3d2c7d883e
  • alt-nodejs16-npm_8.19.4-16.20.2.9_amd64.deb
    sha:a0cbb68000618a192e15ea7994c8294a00782500
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.