[CLSA-2025:1764607677] Fix CVE(s): CVE-2023-38552
Type:
security
Severity:
Important
Release date:
2025-12-01 16:48:01 UTC
Description:
* SECURITY UPDATE: Node.js policy integrity check bypass vulnerability - debian/patches/CVE-2023-38552.patch: use tamper-proof integrity check function to prevent tampering with Hash class internals in policy mechanism - CVE-2023-38552
Updated packages:
  • alt-nodejs14-docs_14.21.3-9_amd64.deb
    sha:d0465679399091ff1f262f45cf409648ddfbaaa8
  • alt-nodejs14-nodejs_14.21.3-9_amd64.deb
    sha:f6fed683ad40602d7072bbc32631a8ac56de7311
  • alt-nodejs14-nodejs-devel_14.21.3-9_amd64.deb
    sha:2498514577c323cd749f6563f9180c54ddddc771
  • alt-nodejs14-npm_6.14.18-14.21.3.9_amd64.deb
    sha:56fcb34c546c1a58d0f5901d0cf1fbd2726a5e6a
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.