HomeFreeBSD

www/node16: Security update to 16.17.1

Description

www/node16: Security update to 16.17.1

Changelog: https://github.com/nodejs/node/releases/tag/v16.17.1

The following CVEs are fixed in this release:

CVE-2022-32212: DNS rebinding in --inspect on macOS
CVE-2022-32213: bypass via obs-fold mechanic
CVE-2022-35255: Weak randomness in WebCrypto keygen
CVE-2022-35256: HTTP Request Smuggling - Incorrect Parsing of Header Fields

PR: 266595
Approved by: (maintainer timeout)
MFH: 2022Q4
Differential Revision: https://reviews.freebsd.org/D36692

Details

Provenance
otisAuthored on Oct 16 2022, 8:24 AM
mfechnerCommitted on Oct 16 2022, 4:19 PM
Differential Revision
D36692: www/node16: Update to 16.17.1
Parents
R11:3b3da7d7b279: devel/unibilium: Tidy up
Branches
Unknown
Tags
Unknown