[CLSA-2025:1756305640] nodejs: Fix of CVE-2024-28863
Type:
security
Severity:
Moderate
Release date:
2025-08-27 14:40:43 UTC
Description:
- CVE-2024-28863: prevent extraction in excessively deep sub-folders to address unlimited sub-folders vulnerability
Updated packages:
  • nodejs-16.20.2-3.el9_2.tuxcare.els7.x86_64.rpm
    sha:9932738608f44b35b5e1948f6f79e897da0e04ae2c12e623bd613e0618a4b183
  • nodejs-devel-16.20.2-3.el9_2.tuxcare.els7.x86_64.rpm
    sha:b0b78626dc2eb75e52c296b99f4e739a6ef3fc6a7afb487230ae1a9dfdbc2642
  • nodejs-docs-16.20.2-3.el9_2.tuxcare.els7.noarch.rpm
    sha:5ccf44bbd89c0f1fbfe10254eaaa526a5b1d78ba244e2abdbc8a6d475eb1b4f7
  • nodejs-full-i18n-16.20.2-3.el9_2.tuxcare.els7.x86_64.rpm
    sha:c7bb6b69ae1c965b107e00af4bc3319d383dcd873df1baaf95eb3a02a04cb3d5
  • nodejs-libs-16.20.2-3.el9_2.tuxcare.els7.i686.rpm
    sha:88818353ac6aef90a1f8c47a08fb86c242cc4fdc419c65acd72e498d4a6cc06e
  • nodejs-libs-16.20.2-3.el9_2.tuxcare.els7.x86_64.rpm
    sha:9d9d4aba8d3fb78e59bf123acc09ebb1922ca10bb58204b52657f1dfdc732026
  • npm-8.19.4_1.16.20.2-3.el9_2.tuxcare.els7.x86_64.rpm
    sha:97c7a697653b87aec642d96127a812aa3a65c491df7e678587fd8367f976d8f2
  • v8-devel-9.4.146.26_1.16.20.2-3.el9_2.tuxcare.els7.x86_64.rpm
    sha:cbd84fcf2e11866a100e8a16fe3148f263f17171e5352c13c32455d7977dd25c
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.