[CLSA-2026:1780054260] alt-nodejs16-nodejs: Fix of CVE-2026-21717
Type:
security
Severity:
Moderate
Release date:
2026-05-29 14:10:47 UTC
Description:
- CVE-2026-21717: v8: scramble the 24-bit array-index value stored in a Name's hash_field via a 3-round xorshift-multiply with compile-time constants, so consecutive numeric strings no longer collide in V8's internal string table
Updated packages:
  • alt-nodejs16-nodejs-16.20.2-21.el10.x86_64.rpm
    sha:95638a1b2d42a3ebcd63d7b52cd06f5fdac5a90fafa9d48f67a73a79833d3205
  • alt-nodejs16-nodejs-devel-16.20.2-21.el10.x86_64.rpm
    sha:fad94f066d08c8fcc36a529c791ad50df45cad04ada5f7abb13319b38299ed53
  • alt-nodejs16-nodejs-docs-16.20.2-21.el10.noarch.rpm
    sha:2141f4ebada0063c6b5b72e285ad2a0d8b4b4fcdab03b06b0e7cd81a58d9c84c
  • alt-nodejs16-npm-8.19.4-16.20.2.21.el10.x86_64.rpm
    sha:e0a9043e4b6137cdd20d1791fa9f01c7446ae77f7e8fc991ed9281e877f3f18f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.