[CLSA-2026:1770888759] alt-nodejs12-nodejs: Fix of CVE-2025-55131
Type:
security
Severity:
Important
Release date:
2026-02-12 09:32:43 UTC
Description:
- CVE-2025-55131: refactor unsafe buffer creation to remove zero-fill toggle mechanism that could expose uninitialized memory when using vm module with timeout options, preventing potential information disclosure
Updated packages:
  • alt-nodejs12-nodejs-12.22.12-16.el8.x86_64.rpm
    sha:fc3e0026b3bd64e7dc7db1827e69eda817dd0b6ee2795f93d7618fb68455db1b
  • alt-nodejs12-nodejs-devel-12.22.12-16.el8.x86_64.rpm
    sha:f069d884a6d99375f726d45c98a4e0ca72b39045a525003ba986b42eb602ce32
  • alt-nodejs12-nodejs-docs-12.22.12-16.el8.noarch.rpm
    sha:b341b7e463c8b38c45105fc1f37f2c972e347e06778387b0dbc1d9b524757949
  • alt-nodejs12-npm-6.14.16-12.22.12.16.el8.x86_64.rpm
    sha:e02289e96ab3f94b13551449b956f02effb4702d3d2c781833c817dacb6dd984
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.