[CLSA-2025:1764606755] Fix CVE(s): CVE-2023-38552
Type:
security
Severity:
Important
Release date:
2025-12-01 16:32:39 UTC
Description:
* SECURITY UPDATE: Node.js policy integrity check bypass vulnerability - debian/patches/CVE-2023-38552.patch: use tamper-proof integrity check function to prevent tampering with Hash class internals in policy mechanism - CVE-2023-38552
Updated packages:
  • alt-nodejs14-docs_14.21.3-9_amd64.deb
    sha:49e7b3bc89f0fca68b6b0069bb2aaa20ab4c8079
  • alt-nodejs14-nodejs_14.21.3-9_amd64.deb
    sha:cf153eeab592d776c2880a78650c3ca07d2bd109
  • alt-nodejs14-nodejs-devel_14.21.3-9_amd64.deb
    sha:483399fec245e0c6444aab4d0b32dc357dcc9cd5
  • alt-nodejs14-npm_6.14.18-14.21.3.9_amd64.deb
    sha:0b815fbfd1d0b4424beafde50e26efe8479e1f5d
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.