No description
Find a file
Stephen Gallagher 7252990188 Update to 18.18.2
This is a security release.

The following CVEs are fixed in this release:

* [CVE-2023-44487](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-44487): `nghttp2` Security Release (High)
* [CVE-2023-45143](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-45143): `undici` Security Release (High)
* [CVE-2023-38552](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-38552):  Integrity checks according to policies can be circumvented (Medium)
* [CVE-2023-39333](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-39333): Code injection via WebAssembly export names (Low)

More detailed information on each of the vulnerabilities can be found in [October 2023 Security Releases](https://nodejs.org/en/blog/vulnerability/october-2023-security-releases/) blog post.

Signed-off-by: Stephen Gallagher <sgallagh@redhat.com>
2023-10-16 13:11:30 -04:00
packaging Fix variable substitution 2023-09-07 16:31:03 -04:00
.gitignore Update to Node.js 16.15.0 2022-04-27 19:13:00 -04:00
0001-Fedora-specific-patches.patch Rebase Fedora patches 2023-04-26 12:37:19 -04:00
btest402.js Add proper i18n support 2019-11-06 13:10:19 -05:00
changelog Switch to %autochangelog 2022-06-27 17:02:42 -04:00
macros.nodejs add no-op macro to provide spec compatibility with EPEL 2013-04-14 18:21:43 -07:00
nodejs-sources.sh Sync to latest nodejs-sources.sh 2023-07-12 13:36:15 -04:00
nodejs.pc.in Pull in changes from nodejs20 2023-03-30 08:50:27 -04:00
nodejs18.spec Update to 18.18.2 2023-10-16 13:11:30 -04:00
npmrc Set npmrc to use python3 explicitly 2020-03-16 08:12:49 -04:00
npmrc.builtin.in Replace /usr/etc/npmrc symlink with builtin configuration 2023-04-27 08:50:37 -04:00
README-packaging.md Add version note to packaging readme 2023-08-28 18:53:11 -04:00
sources Update to 18.18.2 2023-10-16 13:11:30 -04:00
test2.js Additional i18n test 2022-03-17 12:20:29 -04:00
v8.pc.in Pull in changes from nodejs20 2023-03-30 08:50:27 -04:00