First published: Mon Feb 17 2025(Updated: )
Moderate: nodejs:18 security update
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/nodejs | <18.20.6-1.module+el8.10.0+22776+24cd6c55 | 18.20.6-1.module+el8.10.0+22776+24cd6c55 |
redhat/nodejs-nodemon | <3.0.1-1.module+el8.10.0+21159+f5a7145d | 3.0.1-1.module+el8.10.0+21159+f5a7145d |
redhat/nodejs-packaging | <2021.06-4.module+el8.9.0+19439+7b18b275 | 2021.06-4.module+el8.9.0+19439+7b18b275 |
redhat/nodejs-docs | <18.20.6-1.module+el8.10.0+22776+24cd6c55 | 18.20.6-1.module+el8.10.0+22776+24cd6c55 |
redhat/nodejs-nodemon | <3.0.1-1.module+el8.10.0+21159+f5a7145d | 3.0.1-1.module+el8.10.0+21159+f5a7145d |
redhat/nodejs-packaging | <2021.06-4.module+el8.9.0+19439+7b18b275 | 2021.06-4.module+el8.9.0+19439+7b18b275 |
redhat/nodejs-packaging-bundler | <2021.06-4.module+el8.9.0+19439+7b18b275 | 2021.06-4.module+el8.9.0+19439+7b18b275 |
redhat/nodejs | <18.20.6-1.module+el8.10.0+22776+24cd6c55 | 18.20.6-1.module+el8.10.0+22776+24cd6c55 |
redhat/nodejs-debuginfo | <18.20.6-1.module+el8.10.0+22776+24cd6c55 | 18.20.6-1.module+el8.10.0+22776+24cd6c55 |
redhat/nodejs-debugsource | <18.20.6-1.module+el8.10.0+22776+24cd6c55 | 18.20.6-1.module+el8.10.0+22776+24cd6c55 |
redhat/nodejs-devel | <18.20.6-1.module+el8.10.0+22776+24cd6c55 | 18.20.6-1.module+el8.10.0+22776+24cd6c55 |
redhat/nodejs-full-i18n | <18.20.6-1.module+el8.10.0+22776+24cd6c55 | 18.20.6-1.module+el8.10.0+22776+24cd6c55 |
redhat/npm | <10.8.2-1.18.20.6.1.module+el8.10.0+22776+24cd6c55 | 10.8.2-1.18.20.6.1.module+el8.10.0+22776+24cd6c55 |
redhat/nodejs-debuginfo | <18.20.6-1.module+el8.10.0+22776+24cd6c55 | 18.20.6-1.module+el8.10.0+22776+24cd6c55 |
redhat/nodejs-debugsource | <18.20.6-1.module+el8.10.0+22776+24cd6c55 | 18.20.6-1.module+el8.10.0+22776+24cd6c55 |
redhat/nodejs-devel | <18.20.6-1.module+el8.10.0+22776+24cd6c55 | 18.20.6-1.module+el8.10.0+22776+24cd6c55 |
redhat/nodejs-full-i18n | <18.20.6-1.module+el8.10.0+22776+24cd6c55 | 18.20.6-1.module+el8.10.0+22776+24cd6c55 |
redhat/npm | <10.8.2-1.18.20.6.1.module+el8.10.0+22776+24cd6c55 | 10.8.2-1.18.20.6.1.module+el8.10.0+22776+24cd6c55 |
redhat/nodejs | <18.20.6-1.module+el8.10.0+22776+24cd6c55 | 18.20.6-1.module+el8.10.0+22776+24cd6c55 |
redhat/nodejs-debuginfo | <18.20.6-1.module+el8.10.0+22776+24cd6c55 | 18.20.6-1.module+el8.10.0+22776+24cd6c55 |
redhat/nodejs-debugsource | <18.20.6-1.module+el8.10.0+22776+24cd6c55 | 18.20.6-1.module+el8.10.0+22776+24cd6c55 |
redhat/nodejs-devel | <18.20.6-1.module+el8.10.0+22776+24cd6c55 | 18.20.6-1.module+el8.10.0+22776+24cd6c55 |
redhat/nodejs-full-i18n | <18.20.6-1.module+el8.10.0+22776+24cd6c55 | 18.20.6-1.module+el8.10.0+22776+24cd6c55 |
redhat/npm | <10.8.2-1.18.20.6.1.module+el8.10.0+22776+24cd6c55 | 10.8.2-1.18.20.6.1.module+el8.10.0+22776+24cd6c55 |
redhat/nodejs | <18.20.6-1.module+el8.10.0+22776+24cd6c55.aa | 18.20.6-1.module+el8.10.0+22776+24cd6c55.aa |
redhat/nodejs-debuginfo | <18.20.6-1.module+el8.10.0+22776+24cd6c55.aa | 18.20.6-1.module+el8.10.0+22776+24cd6c55.aa |
redhat/nodejs-debugsource | <18.20.6-1.module+el8.10.0+22776+24cd6c55.aa | 18.20.6-1.module+el8.10.0+22776+24cd6c55.aa |
redhat/nodejs-devel | <18.20.6-1.module+el8.10.0+22776+24cd6c55.aa | 18.20.6-1.module+el8.10.0+22776+24cd6c55.aa |
redhat/nodejs-full-i18n | <18.20.6-1.module+el8.10.0+22776+24cd6c55.aa | 18.20.6-1.module+el8.10.0+22776+24cd6c55.aa |
redhat/npm | <10.8.2-1.18.20.6.1.module+el8.10.0+22776+24cd6c55.aa | 10.8.2-1.18.20.6.1.module+el8.10.0+22776+24cd6c55.aa |
Red Hat Enterprise Linux 8 | ||
Red Hat Enterprise Linux for Power, little endian - Extended Update Support | ||
Red Hat Enterprise Linux Server for IBM z Systems | ||
Red Hat Enterprise Linux for ARM 64 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2025:1582 is classified as moderate.
To fix RHSA-2025:1582, you should update the affected packages to the recommended versions detailed in the advisory.
RHSA-2025:1582 addresses vulnerabilities related to insufficiently random values in undici (CVE-2025-22150).
Node.js versions prior to 18.20.6 are affected by RHSA-2025:1582.
You can determine if your system is vulnerable by checking if any of the affected package versions are installed.