Release Info

Advisory: CLSA-2025:1766654072

OS: Ubuntu 22.04

Public date: 2025-12-25 09:14:34.535907

Project: nodejs

Version: 16.20.2-9

Errata link: https://errata.tuxcare.com/els_alt_nodejs/ubuntu22.04/CLSA-2025-1766654072.html

Changelog

* SECURITY UPDATE: Node.js undici cross-origin redirect vulnerability - debian/patches/CVE-2023-45143.patch: clear Cookie and Host headers on cross-origin redirects to prevent sensitive data leakage - CVE-2023-45143

Update

Update command: apt-get update apt-get --only-upgrade install alt-nodejs*

Packages list

alt-nodejs16-docs_16.20.2-9_amd64.deb alt-nodejs16-nodejs_16.20.2-9_amd64.deb alt-nodejs16-nodejs-devel_16.20.2-9_amd64.deb alt-nodejs16-npm_8.19.4-16.20.2.9_amd64.deb

CVEs

CVE-2023-45143