Opened 3 years ago
Closed 2 years ago
#19552 closed enhancement (fixed)
node.js-20.12.1
| Reported by: | Bruce Dubbs | Owned by: | Rahul Chandra |
|---|---|---|---|
| Priority: | elevated | Milestone: | 12.2 |
| Component: | BOOK | Version: | git |
| Severity: | medium | Keywords: | |
| Cc: |
Description
New minor version,
Change History (4)
comment:1 by , 3 years ago
| Owner: | changed from to |
|---|---|
| Status: | new → assigned |
comment:2 by , 3 years ago
| Priority: | normal → elevated |
|---|---|
| Summary: | node.js-20.12.0 → node.js-20.12.1 |
comment:3 by , 2 years ago
Notable Changes
CVE-2024-27983 - Assertion failed in node::http2::Http2Session::~Http2Session() leads to HTTP/2 server crash- (High) CVE-2024-27982 - HTTP Request Smuggling via Content Length Obfuscation - (Medium) llhttp version 9.2.1 undici version 5.28.4
Commits
[bd8f10a257] - deps: update undici to v5.28.4 (Matteo Collina) nodejs-private/node-private#576 [5e34540a96] - http: do not allow OBS fold in headers by default (Paolo Insogna) nodejs-private/node-private#557 [ba1ae6d188] - src: ensure to close stream when destroying session (Anna Henningsen) nodejs-private/node-private#561
comment:4 by , 2 years ago
| Resolution: | → fixed |
|---|---|
| Status: | assigned → closed |
Fixed @ 2a406a80d09225e7b9f316a1dcfe0dd881d0e74c - Update to node.js-20.12.1 995d8944b59459835ce51e65dfd10573c3a7ad75 - Update to samba-4.20.0 b759af786bac343cff0d53b398c18eacdbbd0c72 - Update to mesa-24.0.4

Now 20.12.1, with two security fixes