[CLSA-2026:1779873704] Fix CVE(s): CVE-2026-21712
Type:
security
Severity:
Moderate
Release date:
2026-05-27 09:21:49 UTC
Description:
* SECURITY UPDATE: assertion failure in url.format() on malformed IDN - debian/patches/CVE-2026-21712.patch: return original href when ada::parse fails instead of CHECK(out) crash in BindingData::Format - CVE-2026-21712
Updated packages:
  • alt-nodejs20-docs_20.20.2-2_amd64.deb
    sha:c674daf63fb26cde0164132bd4b9440e542d4812
  • alt-nodejs20-nodejs_20.20.2-2_amd64.deb
    sha:c46b0322ee1ec26703bbb9ad44776761fe00e030
  • alt-nodejs20-nodejs-devel_20.20.2-2_amd64.deb
    sha:95a1b560a15096d76de1259f1eb56789e0ca3cb8
  • alt-nodejs20-npm_10.8.2-20.20.2-2_amd64.deb
    sha:220683c24417b7433ddae4feace6e37c1f2f967f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.