[CLSA-2026:1779873915] Fix CVE(s): CVE-2026-21712
Type:
security
Severity:
Moderate
Release date:
2026-05-27 09:25:19 UTC
Description:
* SECURITY UPDATE: assertion failure in url.format() on malformed IDN - debian/patches/CVE-2026-21712.patch: return original href when ada::parse fails instead of CHECK(out) crash in BindingData::Format - CVE-2026-21712
Updated packages:
  • alt-nodejs20-docs_20.20.2-2_amd64.deb
    sha:7570a29db34fcce9031152f68d3ce0afbedfc12f
  • alt-nodejs20-nodejs_20.20.2-2_amd64.deb
    sha:bac5773136e2b9718cc2af19daa0847fa317e17c
  • alt-nodejs20-nodejs-devel_20.20.2-2_amd64.deb
    sha:22011056ca122ed49fa2a57dd9389c7663d82386
  • alt-nodejs20-npm_10.8.2-20.20.2-2_amd64.deb
    sha:b8d271ac1bffc8040bf704d0c88dd271fed5a86f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.