File _patchinfo of Package patchinfo.33369
<patchinfo incident="33369">
<issue tracker="cve" id="2024-27982"/>
<issue tracker="cve" id="2024-27983"/>
<issue tracker="bnc" id="1222384">VUL-0: CVE-2024-27982: nodejs18,nodejs20: HTTP Request Smuggling via Content Length Obfuscation</issue>
<issue tracker="bnc" id="1222244">VUL-0: nodejs20,nodejs18: VU#421644: HTTP/2 CONTINUATION frames can be utilized for DoS attacks</issue>
<packager>adamm</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for nodejs16</summary>
<description>This update for nodejs16 fixes the following issues:
- CVE-2024-27983: Fixed failed assertion in node::http2::Http2Session::~Http2Session() that could lead to HTTP/2 server crash (bsc#1222244)
- CVE-2024-27982: Fixed HTTP Request Smuggling via Content Length Obfuscation (bsc#1222384)
</description>
</patchinfo>