RHSA-2024:1503HighCVSS 8.1
Red Hat Security Advisory: nodejs:18 security update
🔗 CVE IDs covered (3)
📋 Description
CVE-2023-46809 — nodejs: vulnerable to timing variant of the Bleichenbacher attack against PKCS#1 v1.5 padding (Marvin) CVE-2024-21892 — nodejs: code injection and privilege escalation through Linux capabilities CVE-2024-22019 — nodejs: reading unprocessed HTTP request with unbounded chunk extension allows DoS attacks