[CLSA-2026:1776939108] nodejs: Fix of CVE-2026-21714
Type:
security
Severity:
Moderate
Release date:
2026-04-23 10:11:53 UTC
Description:
- CVE-2026-21714: fix HTTP/2 Http2Session memory leak triggered by a connection-level WINDOW_UPDATE that overflows the flow control window
Updated packages:
  • nodejs-16.20.2-8.el9_6.tuxcare.els12.x86_64.rpm
    sha:e3227ad503fd3d61e95f1a3a4aaf709ddbdb7bbb5713dfddec01d7cffa900cd2
  • nodejs-devel-16.20.2-8.el9_6.tuxcare.els12.x86_64.rpm
    sha:9be29137b35361b4a6084e2347a225c81e6b47da39acae4d236c1572db9dfa86
  • nodejs-docs-16.20.2-8.el9_6.tuxcare.els12.noarch.rpm
    sha:583f4c358452a9d8b86213a5ef523219d23f282763b03efce093059c41cfc52b
  • nodejs-full-i18n-16.20.2-8.el9_6.tuxcare.els12.x86_64.rpm
    sha:df7ceffd07f4f009abe8fd6b4aaa5bcb975097068dc947af2c0ca6a71e2bfac8
  • nodejs-libs-16.20.2-8.el9_6.tuxcare.els12.i686.rpm
    sha:f2b23040d86cad9411765dc43ce3ca64ee930482cae2fad21758af370f0f54e5
  • nodejs-libs-16.20.2-8.el9_6.tuxcare.els12.x86_64.rpm
    sha:cb511db79222a87f8c7cce9a49764cc6ed562b19ee6db566fc03d1cffec1f133
  • npm-8.19.4_1.16.20.2-8.el9_6.tuxcare.els12.x86_64.rpm
    sha:8aa91e013f3222bb44fb264e6ceeaee5c1c7a52ebeb650ea7f216b9a5f431c49
  • v8-devel-9.4.146.26_1.16.20.2-8.el9_6.tuxcare.els12.x86_64.rpm
    sha:096d058211fcb16d470fa1d29f30f65d46154a4d394cc159eb750ba63d7798e7
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.