[CLSA-2025:1758102713] nodejs: Fix of CVE-2025-22150
Type:
security
Severity:
Moderate
Release date:
2025-09-17 09:51:56 UTC
Description:
- CVE-2025-22150: fix issue where undici used Math.random() to choose boundary for multipart/form-data request, now uses secure random number generator
Updated packages:
  • nodejs-16.20.2-3.el9_2.tuxcare.els10.x86_64.rpm
    sha:be85eb6828101bb30cf606744295ec637d9fdaddac52a50e54b538e95a510fe6
  • nodejs-devel-16.20.2-3.el9_2.tuxcare.els10.x86_64.rpm
    sha:9627c11e231e80f4277bc9f8aecc5ed3d4a1f891eab258c42c1405f5350a5c94
  • nodejs-docs-16.20.2-3.el9_2.tuxcare.els10.noarch.rpm
    sha:e192f716d1a6f27327266af0c65460377869985dcc2c10b40d97146249da4f1f
  • nodejs-full-i18n-16.20.2-3.el9_2.tuxcare.els10.x86_64.rpm
    sha:ac36458b984ddbdaaa34f88530105bfae022b1045d2ee2e9fd41ce1d3ef00c66
  • nodejs-libs-16.20.2-3.el9_2.tuxcare.els10.i686.rpm
    sha:a665e9ab5f3b573e22d786011d776a5508300158fafa0f0374dc62128c253d7a
  • nodejs-libs-16.20.2-3.el9_2.tuxcare.els10.x86_64.rpm
    sha:0daaf8a7a634e14ed45e6e13974455f1648dda32b06038d1cd377d865fc825a2
  • npm-8.19.4_1.16.20.2-3.el9_2.tuxcare.els10.x86_64.rpm
    sha:c6426736885bb982ab490faf1062e05426916a070262188a2403926395b82a75
  • v8-devel-9.4.146.26_1.16.20.2-3.el9_2.tuxcare.els10.x86_64.rpm
    sha:46146ce3421da9ccd5491ac33b1d1a93690dc41f3ce6aaf4d493bd680e6ba013
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.