Release date:
2025-12-16 17:42:24 UTC
Description:
* SECURITY UPDATE: Node.js zlib denial of service vulnerability
- debian/patches/CVE-2024-22025.patch: pause stream if outgoing buffer
is full to prevent resource exhaustion during decompression
- CVE-2024-22025
Updated packages:
-
alt-nodejs14-docs_14.21.3-14_amd64.deb
sha:59422da1a7b206d4aeeb1b57e2620a41087003bd
-
alt-nodejs14-nodejs_14.21.3-14_amd64.deb
sha:a4c23e25ee98203e14471584f08b4770c4b35930
-
alt-nodejs14-nodejs-devel_14.21.3-14_amd64.deb
sha:0830afc817e915e0f3ca71896508007520d85c1c
-
alt-nodejs14-npm_6.14.18-14.21.3.14_amd64.deb
sha:f77b16179a7105f3d24ed36140940aa00b3e7a15
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.