Release date:
2025-12-10 10:32:55 UTC
Description:
* SECURITY UPDATE: Marvin Attack vulnerability in Node.js
– debian/patches/CVE-2023-46809.patch: fixes a timing‑side‑channel
flaw in the RSA PKCS#1 v1.5 decryption logic, preventing a Marvin‑style
padding‑oracle attack that could allow recovery of sensitive data.
– CVE-2023-46809
Updated packages:
-
alt-nodejs16-docs_16.20.2-5_amd64.deb
sha:d8260571db362d4dc79957254efb1ff2fc48a435
-
alt-nodejs16-nodejs_16.20.2-5_amd64.deb
sha:615fd20184610a85bda921b4410f44f0188db7e9
-
alt-nodejs16-nodejs-devel_16.20.2-5_amd64.deb
sha:6bd46b92af67c5260b2c3e5602bdcc6f8fc48bf2
-
alt-nodejs16-npm_8.19.4-16.20.2.5_amd64.deb
sha:b8cf0c600bbf427c1673461a0ac4733791b0a314
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.