July 2021 Security Releases

Security releases availableUpdates are now available for v16.x, v14.x, and v12.x Node.js release lines for
the following issue.
We normally like to give advance notice and provide releases in which the only
changes are security fixes, but since this vu…


This content originally appeared on Node.js Blog and was authored by Daniel Bevenius

Security releases available

Updates are now available for v16.x, v14.x, and v12.x Node.js release lines for the following issue.

We normally like to give advance notice and provide releases in which the only changes are security fixes, but since this vulnerability was already public we felt it was more important to get this fix out fast in releases that were already planned.

Use after free on close http2 on stream canceling (High) (CVE-2021-22930)

Node.js is vulnerable to a use after free attack where an attacker might be able to exploit the memory corruption, to change process behavior.

You can read more about it in https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-22930

Impacts:

  • All versions of the 16.x, 14.x, and 12.x releases lines

Downloads and release details


This content originally appeared on Node.js Blog and was authored by Daniel Bevenius


Print Share Comment Cite Upload Translate Updates
APA

Daniel Bevenius | Sciencx (2021-07-29T16:00:00+00:00) July 2021 Security Releases. Retrieved from https://www.scien.cx/2021/07/29/july-2021-security-releases-2/

MLA
" » July 2021 Security Releases." Daniel Bevenius | Sciencx - Thursday July 29, 2021, https://www.scien.cx/2021/07/29/july-2021-security-releases-2/
HARVARD
Daniel Bevenius | Sciencx Thursday July 29, 2021 » July 2021 Security Releases., viewed ,<https://www.scien.cx/2021/07/29/july-2021-security-releases-2/>
VANCOUVER
Daniel Bevenius | Sciencx - » July 2021 Security Releases. [Internet]. [Accessed ]. Available from: https://www.scien.cx/2021/07/29/july-2021-security-releases-2/
CHICAGO
" » July 2021 Security Releases." Daniel Bevenius | Sciencx - Accessed . https://www.scien.cx/2021/07/29/july-2021-security-releases-2/
IEEE
" » July 2021 Security Releases." Daniel Bevenius | Sciencx [Online]. Available: https://www.scien.cx/2021/07/29/july-2021-security-releases-2/. [Accessed: ]
rf:citation
» July 2021 Security Releases | Daniel Bevenius | Sciencx | https://www.scien.cx/2021/07/29/july-2021-security-releases-2/ |

Please log in to upload a file.




There are no updates yet.
Click the Upload button above to add an update.

You must be logged in to translate posts. Please log in or register.