Upstream information

CVE-2024-37372 at MITRE

Description

** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.

SUSE information

Overall state of this security issue: Does not affect SUSE products

This issue is currently not rated by SUSE as it is not affecting the SUSE Enterprise products.

SUSE Bugzilla entry: 1227563 [NEW]

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SUSE Linux Enterprise High Performance Computing 15 SP5
SUSE Linux Enterprise Module for Web and Scripting 15 SP5
SUSE Linux Enterprise Server 15 SP5
SUSE Linux Enterprise Server for SAP Applications 15 SP5
  • nodejs20 >= 20.15.1-150500.11.12.2
  • nodejs20-devel >= 20.15.1-150500.11.12.2
  • nodejs20-docs >= 20.15.1-150500.11.12.2
  • npm20 >= 20.15.1-150500.11.12.2
Patchnames:
SUSE-SLE-Module-Web-Scripting-15-SP5-2024-2543
openSUSE Leap 15.5
  • corepack20 >= 20.15.1-150500.11.12.2
  • nodejs20 >= 20.15.1-150500.11.12.2
  • nodejs20-devel >= 20.15.1-150500.11.12.2
  • nodejs20-docs >= 20.15.1-150500.11.12.2
  • npm20 >= 20.15.1-150500.11.12.2
Patchnames:
openSUSE-SLE-15.5-2024-2543

List of packages in QA

Product(s) Package(s)
SUSE Linux Enterprise Module for Web and Scripting 15 SP6
  • nodejs20 >= 20.15.1-150600.3.3.2
  • nodejs20-devel >= 20.15.1-150600.3.3.2
  • nodejs20-docs >= 20.15.1-150600.3.3.2
  • npm20 >= 20.15.1-150600.3.3.2
SUSE Linux Enterprise Server 15 SP6
  • nodejs20 >= 20.15.1-150600.3.3.2
  • nodejs20-devel >= 20.15.1-150600.3.3.2
  • nodejs20-docs >= 20.15.1-150600.3.3.2
  • npm20 >= 20.15.1-150600.3.3.2
SUSE Linux Enterprise Server for SAP Applications 15 SP6
  • nodejs20 >= 20.15.1-150600.3.3.2
  • nodejs20-devel >= 20.15.1-150600.3.3.2
  • nodejs20-docs >= 20.15.1-150600.3.3.2
  • npm20 >= 20.15.1-150600.3.3.2
SUSE Linux Enterprise High Performance Computing 15 SP6
  • nodejs20 >= 20.15.1-150600.3.3.2
  • nodejs20-devel >= 20.15.1-150600.3.3.2
  • nodejs20-docs >= 20.15.1-150600.3.3.2
  • npm20 >= 20.15.1-150600.3.3.2


SUSE Timeline for this CVE

CVE page created: Tue Jul 9 12:15:14 2024
CVE page last modified: Wed Jul 17 11:51:36 2024