First published: Mon Feb 17 2025(Updated: )
Important: nodejs:20 security update
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions | ||
Red Hat Red Hat Enterprise Linux for x86_64 - Extended Update Support | ||
Red Hat Red Hat Enterprise Linux for Power, little endian - Extended Update Support | ||
Red Hat Enterprise Linux for IBM z Systems | ||
Red Hat Red Hat Enterprise Linux for ARM 64 - 4 years of updates | ||
Red Hat Enterprise Linux for IBM z Systems | ||
Red Hat Enterprise Linux Server | ||
Red Hat Enterprise Linux for SAP Solutions | ||
Red Hat Enterprise Linux for ARM64 EUS | ||
redhat/nodejs | <20.18.2-1.module+el9.4.0+22789+7c201776 | 20.18.2-1.module+el9.4.0+22789+7c201776 |
redhat/nodejs-nodemon | <3.0.1-1.module+el9.3.0 | 3.0.1-1.module+el9.3.0 |
redhat/nodejs-packaging | <2021.06-4.module+el9.3.0+19518+63aad52d | 2021.06-4.module+el9.3.0+19518+63aad52d |
redhat/nodejs-docs | <20.18.2-1.module+el9.4.0+22789+7c201776 | 20.18.2-1.module+el9.4.0+22789+7c201776 |
redhat/nodejs-packaging | <2021.06-4.module+el9.3.0+19518+63aad52d | 2021.06-4.module+el9.3.0+19518+63aad52d |
redhat/nodejs-packaging-bundler | <2021.06-4.module+el9.3.0+19518+63aad52d | 2021.06-4.module+el9.3.0+19518+63aad52d |
redhat/nodejs | <20.18.2-1.module+el9.4.0+22789+7c201776 | 20.18.2-1.module+el9.4.0+22789+7c201776 |
redhat/nodejs-debuginfo | <20.18.2-1.module+el9.4.0+22789+7c201776 | 20.18.2-1.module+el9.4.0+22789+7c201776 |
redhat/nodejs-debugsource | <20.18.2-1.module+el9.4.0+22789+7c201776 | 20.18.2-1.module+el9.4.0+22789+7c201776 |
redhat/nodejs-devel | <20.18.2-1.module+el9.4.0+22789+7c201776 | 20.18.2-1.module+el9.4.0+22789+7c201776 |
redhat/nodejs-full-i18n | <20.18.2-1.module+el9.4.0+22789+7c201776 | 20.18.2-1.module+el9.4.0+22789+7c201776 |
redhat/npm | <10.8.2-1.20.18.2.1.module+el9.4.0+22789+7c201776 | 10.8.2-1.20.18.2.1.module+el9.4.0+22789+7c201776 |
redhat/nodejs-debuginfo | <20.18.2-1.module+el9.4.0+22789+7c201776 | 20.18.2-1.module+el9.4.0+22789+7c201776 |
redhat/nodejs-debugsource | <20.18.2-1.module+el9.4.0+22789+7c201776 | 20.18.2-1.module+el9.4.0+22789+7c201776 |
redhat/nodejs-devel | <20.18.2-1.module+el9.4.0+22789+7c201776 | 20.18.2-1.module+el9.4.0+22789+7c201776 |
redhat/nodejs-full-i18n | <20.18.2-1.module+el9.4.0+22789+7c201776 | 20.18.2-1.module+el9.4.0+22789+7c201776 |
redhat/npm | <10.8.2-1.20.18.2.1.module+el9.4.0+22789+7c201776 | 10.8.2-1.20.18.2.1.module+el9.4.0+22789+7c201776 |
redhat/nodejs | <20.18.2-1.module+el9.4.0+22789+7c201776 | 20.18.2-1.module+el9.4.0+22789+7c201776 |
redhat/nodejs-debuginfo | <20.18.2-1.module+el9.4.0+22789+7c201776 | 20.18.2-1.module+el9.4.0+22789+7c201776 |
redhat/nodejs-debugsource | <20.18.2-1.module+el9.4.0+22789+7c201776 | 20.18.2-1.module+el9.4.0+22789+7c201776 |
redhat/nodejs-devel | <20.18.2-1.module+el9.4.0+22789+7c201776 | 20.18.2-1.module+el9.4.0+22789+7c201776 |
redhat/nodejs-full-i18n | <20.18.2-1.module+el9.4.0+22789+7c201776 | 20.18.2-1.module+el9.4.0+22789+7c201776 |
redhat/npm | <10.8.2-1.20.18.2.1.module+el9.4.0+22789+7c201776 | 10.8.2-1.20.18.2.1.module+el9.4.0+22789+7c201776 |
redhat/nodejs | <20.18.2-1.module+el9.4.0+22789+7c201776.aa | 20.18.2-1.module+el9.4.0+22789+7c201776.aa |
redhat/nodejs-debuginfo | <20.18.2-1.module+el9.4.0+22789+7c201776.aa | 20.18.2-1.module+el9.4.0+22789+7c201776.aa |
redhat/nodejs-debugsource | <20.18.2-1.module+el9.4.0+22789+7c201776.aa | 20.18.2-1.module+el9.4.0+22789+7c201776.aa |
redhat/nodejs-devel | <20.18.2-1.module+el9.4.0+22789+7c201776.aa | 20.18.2-1.module+el9.4.0+22789+7c201776.aa |
redhat/nodejs-full-i18n | <20.18.2-1.module+el9.4.0+22789+7c201776.aa | 20.18.2-1.module+el9.4.0+22789+7c201776.aa |
redhat/npm | <10.8.2-1.20.18.2.1.module+el9.4.0+22789+7c201776.aa | 10.8.2-1.20.18.2.1.module+el9.4.0+22789+7c201776.aa |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2025:1522 is classified as Important.
To fix RHSA-2025:1522, update nodejs to version 20.18.2-1.module+el9.4.0+22789+7c201776 or later.
Versions of nodejs prior to 20.18.2-1.module+el9.4.0+22789+7c201776 are affected by RHSA-2025:1522.
CVE-2025-23083 allows exposure of the Node.js Worker Thread via the Diagnostics Channel.
RHSA-2025:1522 impacts multiple platforms, including Red Hat Enterprise Linux Server for Power LE and x86_64 architectures.