From 8a9d28872927128f394cf9ebc0af4bb6a4486f27 Mon Sep 17 00:00:00 2001 From: Lev Lamberov Date: Sat, 6 Jun 2020 16:22:48 +0500 Subject: [SECURITY] [DSA 4696-1] nodejs security update --- english/security/2020/dsa-4696.data | 13 +++++++++++++ english/security/2020/dsa-4696.wml | 19 +++++++++++++++++++ 2 files changed, 32 insertions(+) create mode 100644 english/security/2020/dsa-4696.data create mode 100644 english/security/2020/dsa-4696.wml diff --git a/english/security/2020/dsa-4696.data b/english/security/2020/dsa-4696.data new file mode 100644 index 00000000000..c77014c6db8 --- /dev/null +++ b/english/security/2020/dsa-4696.data @@ -0,0 +1,13 @@ +DSA-4696-1 nodejs +2020-6-06 +CVE-2020-8174 CVE-2020-11080 Bug#962145 +nodejs +yes +yes +no + +#use wml::debian::security + + + + diff --git a/english/security/2020/dsa-4696.wml b/english/security/2020/dsa-4696.wml new file mode 100644 index 00000000000..bfce8c47e62 --- /dev/null +++ b/english/security/2020/dsa-4696.wml @@ -0,0 +1,19 @@ +security update + +

Two vulnerabilities were discovered in Node.js, which could result in +denial of service and potentially the execution of arbitrary code.

+ +

For the stable distribution (buster), these problems have been fixed in +version 10.21.0~dfsg-1~deb10u1.

+ +

We recommend that you upgrade your nodejs packages.

+ +

For the detailed security status of nodejs please refer to +its security tracker page at: +\ +https://security-tracker.debian.org/tracker/nodejs

+
+ +# do not modify the following line +#include "$(ENGLISHDIR)/security/2020/dsa-4696.data" +# $Id: $ -- cgit v1.2.3