Release Info

Advisory: CLSA-2026:1770717358

OS: TuxCare 9.6 ESU

Public date: 2026-02-10 09:56:01.683955

Project: nodejs

Version: 16.20.2-8.el9_6.tuxcare.els5

Errata link: https://errata.tuxcare.com/els_os/tuxcare9.6esu/CLSA-2026-1770717358.html

Changelog

- CVE-2024-28863: prevent extraction in excessively deep sub-folders to fix potential memory consumption and crashing issues.

Update

Update command: dnf update nodejs*

Packages list

nodejs-16.20.2-8.el9_6.tuxcare.els5.x86_64.rpm nodejs-devel-16.20.2-8.el9_6.tuxcare.els5.x86_64.rpm nodejs-docs-16.20.2-8.el9_6.tuxcare.els5.noarch.rpm nodejs-full-i18n-16.20.2-8.el9_6.tuxcare.els5.x86_64.rpm nodejs-libs-16.20.2-8.el9_6.tuxcare.els5.i686.rpm nodejs-libs-16.20.2-8.el9_6.tuxcare.els5.x86_64.rpm npm-8.19.4_1.16.20.2-8.el9_6.tuxcare.els5.x86_64.rpm v8-devel-9.4.146.26_1.16.20.2-8.el9_6.tuxcare.els5.x86_64.rpm

CVEs

CVE-2024-28863
CVE-2023-46809
CVE-2025-23085