Release date:
2026-02-13 16:40:06 UTC
Description:
* SECURITY UPDATE: TLS callback exception handling vulnerability
- debian/patches/CVE-2026-21637.patch: wrap pskCallback and ALPNCallback
invocations in try-catch blocks to route exceptions through error
handlers
- CVE-2026-21637
* SECURITY UPDATE: Stack overflow exception handling in async_hooks
- debian/patches/CVE-2025-59466.patch: rethrow stack overflow exceptions
in async_hooks instead of calling FatalException
- CVE-2025-59466
Updated packages:
-
alt-nodejs18-docs_18.20.8-4_amd64.deb
sha:0067e6244b9a1cba9db1f2faf25b60153ddb871a
-
alt-nodejs18-nodejs_18.20.8-4_amd64.deb
sha:346fc0e2dbb96727272fb46d12a7d873f890990c
-
alt-nodejs18-nodejs-devel_18.20.8-4_amd64.deb
sha:ac677b061c66afcca5633fc3a1c5e5685ce349fe
-
alt-nodejs18-npm_10.8.2-18.20.8.4_amd64.deb
sha:d8441e3988051085b6eeab7b13c5ea928828b24e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.