[CLSA-2025:1765908479] Fix CVE(s): CVE-2024-22025
Type:
security
Severity:
Moderate
Release date:
2025-12-16 18:08:03 UTC
Description:
* SECURITY UPDATE: Node.js zlib denial of service vulnerability - debian/patches/CVE-2024-22025.patch: pause stream if outgoing buffer is full to prevent resource exhaustion during decompression - CVE-2024-22025
Updated packages:
  • alt-nodejs14-docs_14.21.3-14_amd64.deb
    sha:9c91beec55c582eec9f732d8010bd7a202fb09d8
  • alt-nodejs14-nodejs_14.21.3-14_amd64.deb
    sha:0c05beb7838b903261d68a94c76c6b77f43031ad
  • alt-nodejs14-nodejs-devel_14.21.3-14_amd64.deb
    sha:a6db393713858131cd67235ec5daa795872f41d1
  • alt-nodejs14-npm_6.14.18-14.21.3.14_amd64.deb
    sha:ba19e7f142f86b9de0388fe79f911ea4888e2ff3
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.