[CLSA-2026:1780062416] alt-nodejs16-nodejs: Fix of CVE-2026-21717
Type:
security
Severity:
Moderate
Release date:
2026-05-29 13:47:02 UTC
Description:
- CVE-2026-21717: v8: scramble the 24-bit array-index value stored in a Name's hash_field via a 3-round xorshift-multiply with compile-time constants, so consecutive numeric strings no longer collide in V8's internal string table
Updated packages:
  • alt-nodejs16-nodejs-16.20.2-21.el7.x86_64.rpm
    sha:aebc36f638ae29ece453ace2efd3e3a0bed8383a45ac61445133fca357ba87c2
  • alt-nodejs16-nodejs-devel-16.20.2-21.el7.x86_64.rpm
    sha:7681f8e0f1ea40d783417b3fc7ca22ecd9cbda7908790a01a80666feeef7d753
  • alt-nodejs16-nodejs-docs-16.20.2-21.el7.noarch.rpm
    sha:8f2aeea80c1ac2edd78da56c72bb2a1fcce820e66dfef4fd0cd993ea8c852b24
  • alt-nodejs16-npm-8.19.4-16.20.2.21.el7.x86_64.rpm
    sha:46e0cdf5d2f604f9c591dcef16c34f9ebb6885dc62a3025d6a16924ff2dd37f2
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.