[CLSA-2025:1764621293] alt-nodejs12-nodejs: Fix of CVE-2022-32212
Type:
security
Severity:
Critical
Release date:
2025-12-02 17:38:31 UTC
Description:
- CVE-2022-32212: fix IPv4 validation in inspector_socket to properly validate IP addresses and reject non-routable IPs (0.0.0.0/8), replace vulnerable dot-counting parser with proper octet validation, add tests
Updated packages:
  • alt-nodejs12-nodejs-12.22.12-7.el7.x86_64.rpm
    sha:1d371020413bbe72398124e2204aab28c4435858c391568b428a7ce61d94a45b
  • alt-nodejs12-nodejs-devel-12.22.12-7.el7.x86_64.rpm
    sha:09407e44912bc346f1b1086529f60e3e1f5b77f162740bd7147c98695890b091
  • alt-nodejs12-nodejs-docs-12.22.12-7.el7.noarch.rpm
    sha:c17e044c388fccf47b6621af86f9004a1651e3475d65bd3b97d2b0c3498d96ea
  • alt-nodejs12-npm-12.22.12-7.el7.x86_64.rpm
    sha:5918f0668d777095972585152b82a164ade20963b5f28460045d40929459313b
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.