[CLSA-2026:1779882253] Fix CVE(s): CVE-2026-21712
Type:
security
Severity:
Moderate
Release date:
2026-05-27 11:44:37 UTC
Description:
* SECURITY UPDATE: assertion failure in url.format() on malformed IDN - debian/patches/CVE-2026-21712.patch: return original href when ada::parse fails instead of CHECK(out) crash in BindingData::Format - CVE-2026-21712
Updated packages:
  • alt-nodejs20-docs_20.20.2-2_amd64.deb
    sha:873369a5ee676dd818b07eb87e4e633e2bbb4a08
  • alt-nodejs20-nodejs_20.20.2-2_amd64.deb
    sha:c4580f59561edf5b708d2deafc7a5f9825d9b470
  • alt-nodejs20-nodejs-devel_20.20.2-2_amd64.deb
    sha:2f76d2e059c88197fa510315d9ccab605a0d902d
  • alt-nodejs20-npm_10.8.2-20.20.2-2_amd64.deb
    sha:77a11a5e6f69b8f484ce4e7f88a483023173f232
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.