[CLSA-2026:1779883312] Fix CVE(s): CVE-2026-21712
Type:
security
Severity:
Moderate
Release date:
2026-05-27 12:01:57 UTC
Description:
* SECURITY UPDATE: assertion failure in url.format() on malformed IDN - debian/patches/CVE-2026-21712.patch: return original href when ada::parse fails instead of CHECK(out) crash in BindingData::Format - CVE-2026-21712
Updated packages:
  • alt-nodejs20-docs_20.20.2-2_amd64.deb
    sha:e31865906ff0cb5dd2c34e88a43c0954d580d687
  • alt-nodejs20-nodejs_20.20.2-2_amd64.deb
    sha:2b08fdb1c07ec11a6617be3caa3edb1244ccef1b
  • alt-nodejs20-nodejs-devel_20.20.2-2_amd64.deb
    sha:301f59a4ae9056f0d0bf7c2b5fef63f3cdab183c
  • alt-nodejs20-npm_10.8.2-20.20.2-2_amd64.deb
    sha:36a4e286f58d204f91b362ced8c4e3bca28121b1
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.