[CLSA-2025:1765365113] alt-nodejs16-nodejs: Fix of CVE-2023-46809
Type:
security
Severity:
Moderate
Release date:
2025-12-10 11:11:56 UTC
Description:
- CVE-2023-46809: fixes a timing‑side‑channel flaw in the RSA PKCS#1 v1.5 decryption logic, preventing a Marvin‑style padding‑oracle attack that could allow recovery of sensitive data.
Updated packages:
  • alt-nodejs16-nodejs-16.20.2-4.el8.x86_64.rpm
    sha:90448274275fb54a31586079ea503aba06e0769088d8f11976ac56276bdceb9d
  • alt-nodejs16-nodejs-devel-16.20.2-4.el8.x86_64.rpm
    sha:af71235993cfd21b7e76a69b037d9b44b206ad72ebe3e02cde8064d5e682db94
  • alt-nodejs16-nodejs-docs-16.20.2-4.el8.noarch.rpm
    sha:7732f1aa897f9c27bcfdfef8653e25753dfe3913710bf8ac8033b17cffeb3f60
  • alt-nodejs16-npm-8.19.4-16.20.2.4.el8.x86_64.rpm
    sha:aaf2b8451d853bcde6392ec9ee43dca37786a0566e86bdb2eae3922d210218e3
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.