DSA-6272-1

NameDSA-6272-1
Descriptionnodejs - security update
SourceDebian
ReferencesCVE-2025-23085, CVE-2025-23166, CVE-2025-55131, CVE-2025-59465, CVE-2025-59466, CVE-2026-21710, CVE-2026-21713, CVE-2026-21714

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
nodejs (PTS)bookworm18.20.4+dfsg-1~deb12u1vulnerable
bookworm (security)18.20.4+dfsg-1~deb12u2fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
nodejssourcebookworm18.20.4+dfsg-1~deb12u2

Search for package or bug name: Reporting problems