Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 811273 (CVE-2021-37701, CVE-2021-37712, CVE-2021-39134, CVE-2021-39135)

Summary: <net-libs/nodejs-{12.22.6, 14.17.6}: multiple vulnerabilities
Product: Gentoo Security Reporter: John Helmert III <ajak>
Component: VulnerabilitiesAssignee: Gentoo Security <security>
Status: IN_PROGRESS ---    
Severity: normal CC: hydrapolic, williamh
Priority: Normal    
Version: unspecified   
Hardware: All   
OS: Linux   
URL: https://nodejs.org/en/blog/vulnerability/aug-2021-security-releases2/
Whiteboard: B2 [glsa]
Package list:
Runtime testing required: ---
Bug Depends on: 818127    
Bug Blocks:    

Description John Helmert III archtester Gentoo Infrastructure gentoo-dev Security 2021-08-31 16:27:03 UTC
Fixes in 12.22.6, 14.17.6. Please bump.
Comment 1 Larry the Git Cow gentoo-dev 2021-09-07 03:31:44 UTC
The bug has been referenced in the following commit(s):

https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=a28b6de9f023f0a04c353b7bf6d1edfbd4bfb5b5

commit a28b6de9f023f0a04c353b7bf6d1edfbd4bfb5b5
Author:     William Hubbs <williamh@gentoo.org>
AuthorDate: 2021-09-07 03:29:52 +0000
Commit:     William Hubbs <williamh@gentoo.org>
CommitDate: 2021-09-07 03:31:37 +0000

    net-libs/nodejs: 14.17.6 bump and stable on amdt64
    
    Bug: https://bugs.gentoo.org/811273
    Package-Manager: Portage-3.0.20, Repoman-3.0.3
    Signed-off-by: William Hubbs <williamh@gentoo.org>

 net-libs/nodejs/Manifest              |   1 +
 net-libs/nodejs/nodejs-14.17.6.ebuild | 243 ++++++++++++++++++++++++++++++++++
 2 files changed, 244 insertions(+)
Comment 2 Larry the Git Cow gentoo-dev 2021-09-16 16:42:54 UTC
The bug has been referenced in the following commit(s):

https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=ee884812bf7de1653620a65c1d3fd1fb86fe48a1

commit ee884812bf7de1653620a65c1d3fd1fb86fe48a1
Author:     Marek Szuba <marecki@gentoo.org>
AuthorDate: 2021-09-16 16:25:53 +0000
Commit:     Marek Szuba <marecki@gentoo.org>
CommitDate: 2021-09-16 16:42:45 +0000

    net-libs/nodejs: add 12.22.6
    
    As requested by williamh on IRC. Straight-to-stable on amd64.
    
    Bug: https://bugs.gentoo.org/811273
    Signed-off-by: Marek Szuba <marecki@gentoo.org>

 net-libs/nodejs/Manifest              |   1 +
 net-libs/nodejs/nodejs-12.22.6.ebuild | 249 ++++++++++++++++++++++++++++++++++
 2 files changed, 250 insertions(+)
Comment 3 John Helmert III archtester Gentoo Infrastructure gentoo-dev Security 2021-11-26 05:08:08 UTC
Please cleanup