Files
packages/lang
Hirokazu MORIKAWA 5657f77c09 node: June 20 2023 Security Releases
Update to v16.20.1

The following CVEs are fixed in this release:
* CVE-2023-30581: mainModule.__proto__ Bypass Experimental Policy Mechanism (High)
* CVE-2023-30585: Privilege escalation via Malicious Registry Key manipulation during Node.js installer repair process (Medium)
* CVE-2023-30588: Process interuption due to invalid Public Key information in x509 certificates (Medium)
* CVE-2023-30589: HTTP Request Smuggling via Empty headers separated by CR (Medium)
* CVE-2023-30590: DiffieHellman does not generate keys after setting a private key (Medium)

* OpenSSL Security Releases  (Depends on shared library provided by OpenWrt)
    * OpenSSL security advisory 28th March.
    * OpenSSL security advisory 20th April.
    * OpenSSL security advisory 30th May

* c-ares vulnerabilities:  (Depends on shared library provided by OpenWrt)
    * GHSA-9g78-jv2r-p7vc
    * GHSA-8r8p-23f3-64c2
    * GHSA-54xr-f67r-4pc4
    * GHSA-x6mf-cxr9-8q6v

Signed-off-by: Hirokazu MORIKAWA <morikw2@gmail.com>
2023-06-21 20:48:54 +08:00
..
2022-01-09 13:46:17 -08:00
2023-06-12 12:25:43 +08:00
2019-08-19 12:16:37 -07:00
2019-11-01 14:55:02 +08:00
2019-08-15 13:23:41 +02:00
2021-06-12 21:05:01 -07:00
2018-11-27 09:04:10 -08:00
2021-06-12 21:05:01 -07:00
2022-11-05 21:20:19 +01:00
2021-06-12 21:05:01 -07:00
2022-01-17 21:12:53 -08:00
2021-09-18 14:49:15 -07:00
2022-01-11 16:25:33 -08:00
2021-06-12 21:05:01 -07:00
2022-01-29 13:31:55 -08:00
2021-06-12 21:05:01 -07:00
2023-06-21 20:48:54 +08:00
2022-05-22 13:39:07 -07:00
2022-05-22 13:39:12 -07:00
2022-05-22 11:22:20 +02:00
2023-03-09 10:45:40 +08:00
2022-02-06 11:08:44 -07:00
2020-03-19 15:38:23 -07:00
2020-03-19 16:03:59 -07:00
2019-10-05 12:22:05 -07:00
2023-06-15 21:24:26 +02:00
2023-06-12 15:17:41 +08:00
2023-04-15 22:12:58 +02:00
2022-01-29 08:19:54 -08:00