Release date:
2025-12-16 17:39:26 UTC
Description:
* SECURITY UPDATE: Node.js zlib denial of service vulnerability
- debian/patches/CVE-2024-22025.patch: pause stream if outgoing buffer
is full to prevent resource exhaustion during decompression
- CVE-2024-22025
Updated packages:
-
alt-nodejs14-docs_14.21.3-14_amd64.deb
sha:dd8eae98c73eebc02c04327477a74320798a27d3
-
alt-nodejs14-nodejs_14.21.3-14_amd64.deb
sha:7451c5bc1715a926e880957bd71ad7f0d1739b00
-
alt-nodejs14-nodejs-devel_14.21.3-14_amd64.deb
sha:b472932b676b251db737e53636da0ebef505aa36
-
alt-nodejs14-npm_6.14.18-14.21.3.14_amd64.deb
sha:1a2b541c3d4a4f2f214217b2b532b57744897d42
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.