[CLSA-2025:1765906256] Fix CVE(s): CVE-2024-22025
Type:
security
Severity:
Moderate
Release date:
2025-12-16 17:31:00 UTC
Description:
* SECURITY UPDATE: Node.js zlib denial of service vulnerability - debian/patches/CVE-2024-22025.patch: pause stream if outgoing buffer is full to prevent resource exhaustion during decompression - CVE-2024-22025
Updated packages:
  • alt-nodejs16-docs_16.20.2-8_amd64.deb
    sha:614b75b4c5e5c8124d0355784e24567a1d74157a
  • alt-nodejs16-nodejs_16.20.2-8_amd64.deb
    sha:08fb7af81f08f9019df497e43083a9254bdb56e9
  • alt-nodejs16-nodejs-devel_16.20.2-8_amd64.deb
    sha:171c001f105771fbeb4dc56b7a2c9282ca7bf341
  • alt-nodejs16-npm_8.19.4-16.20.2.8_amd64.deb
    sha:f7383e15de76bfc4f3f76361b043e538b4508646
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.